Hlr: Generating Adversarial Examples By High-Level Representations

Yuying Hao,Tuanhui Li,Li Li,Yong Jiang,Xuanye Cheng
DOI: https://doi.org/10.1007/978-3-030-30508-6_57
2019-01-01
Abstract:Neural networks can be fooled by adversarial examples. Recently, many methods have been proposed to generate adversarial examples, but these works mainly concentrate on the pixel-wise information, which limits the transferability of adversarial examples. Different from these methods, we introduce perceptual module to extract the high-level representations and change the manifold of the adversarial examples. Besides, we propose a novel network structure to replace the generative adversarial network (GAN). The improved structure ensures high similarity of adversarial examples and promotes the stability of training process. Extensive experiments demonstrate that our method has significant improvement on the transferability. Furthermore, the adversarial training defence method is invalid for our attack.
What problem does this paper attempt to address?