• 微信
  • Facebook
  • 分享链接
ScholarMate
客服热线:400-1616-289
登录注册

Reversible attack based on local visible adversarial perturbation

Chen, Li; Zhu, Shaowei; Andrew, Abel; Yin, Zhaoxia*
SCIE
-

摘要

Adding perturbation to images can mislead classification models to produce incorrect results. Based on this, research has exploited adversarial perturbation to protect private images from retrieval by malicious intelligent models. However, adding adversarial perturbation to images destroys the original data, making images useless in digital forensics and other fields. To prevent illegal or unauthorized access to sensitive image data such as human faces without impeding legitimate users, the use of reversible adversarial attack techniques is becoming more widely investigated, where the original image can be recovered from its reversible adversarial examples. However, existing reversible adversarial attack methods are designed for traditional imperceptible adversarial perturbation and ignore the local visible adversarial perturbation. In this paper, we propose a new method for generating reversible adversarial examples based on local visible adversarial perturbation. The information needed for image recovery is embedded into the area beyond the adversarial patch by the reversible data hiding technique. To reduce image distortion, lossless compression and the B-R-G (blue-red-green) embedding principle are adopted. Experiments on CIFAR-10 and ImageNet datasets show that the proposed method can restore the original images error-free while ensuring good attack performance.

关键词

Reversible attack Adversarial attack Local visible adversarial perturbation Information hiding Reversible data embedding

出版信息

论文状态
公开发表
期刊名称
MULTIMEDIA TOOLS AND APPLICATIONS
发表日期
2024-1
卷
83
期
4
页码
11215-11227
DOI
10.1007/s11042-023-15383-0

学科领域

-

产品服务

  • 科研之友
  • 创新城
  • 科创云

服务支持

  • 帮助中心
  • 隐私政策
  • 服务条款

联系方式

在线客服:【立即咨询】
客服热线:400-1616-289
电子邮箱:support@scholarmate.com

关注或下载科研之友

微信二维码
微信公众号
客户端下载二维码
下载客户端
科研成果科研人员 科研机构 科研动态爱瑞思软件

©2025 深圳市科研之友网络服务有限公司

公安备案图标粤公网安备 44030502000213
粤ICP备 16046710 号粤B2-20110417