Understanding adversarial attacks on deep learning based medical image analysis systems

Xingjun Ma,Yuhao Niu,Lin Gu,Yisen Wang,Yitian Zhao,James Bailey,Feng Lu
DOI: https://doi.org/10.1016/j.patcog.2020.107332
IF: 8
2021-01-01
Pattern Recognition
Abstract:•Medical image DNNs are easier to be attacked than natural non-medical image DNNs.•Complex biological textures of medical images may lead to more vulnerable regions.•State-of-the-art deep networks can be overparameterized for medical imaging tasks.•Medical image adversarial attacks can also be easily detected.•High detectability may be caused by perturbations outside the pathological regions.
What problem does this paper attempt to address?