DSCAE: a Denoising Sparse Convolutional Autoencoder Defense Against Adversarial Examples

Heyuan Polytechnic,Liu Xiaozhang,Li Chunlai
DOI: https://doi.org/10.1007/s12652-020-02642-3
IF: 3.662
2020-01-01
Journal of Ambient Intelligence and Humanized Computing
Abstract:Deep neural networks are a state-of-the-art method used to computer vision. Imperceptible perturbations added to benign images can induce the deep learning network to make incorrect predictions, though the perturbation is imperceptible to human eyes. Those adversarial examples threaten the safety of deep learning model in many real-world applications. In this work, we proposed a method called denoising sparse convolutional autoencoder (DSCAE) to defense against the adversarial perturbations. This is a preprocessing module works before the classification model, which can remove substantial amounts of the adversarial noise. The DSCAE defense has been evaluated against FGSM, DeepFool, C&W, JSMA attacks on the MNIST and CIFAR-10 datasets. The experimental results show that DSCAE defends against state-of-art attacks effectively.
What problem does this paper attempt to address?