Adversarial Data Encryption

Yingdong Hu,Liang Zhang,Wei Shan,Xiaoxiao Qin,Jin Qi,Zhenzhou Wu,Yang Yuan
DOI: https://doi.org/10.48550/arxiv.2002.03793
2020-01-01
Abstract: In the big data era, many organizations face the dilemma of data sharing. Regular data sharing is often necessary for human-centered discussion and communication, especially in medical scenarios. However, unprotected data sharing may also lead to data leakage. Inspired by adversarial attack, we propose a method for data encryption, so that for human beings the encrypted data look identical to the original version, but for machine learning methods they are misleading. To show the effectiveness of our method, we collaborate with the Beijing Tiantan Hospital, which has a world leading neurological center. We invite $3$ doctors to manually inspect our encryption method based on real world medical images. The results show that the encrypted images can be used for diagnosis by the doctors, but not by machine learning methods.
What problem does this paper attempt to address?