Vulnerable Point Detection and Repair Against Adversarial Attacks for Convolutional Neural Networks

Jie Gao,Zhaoqiang Xia,Jing Dai,Chen Dang,Xiaoyue Jiang,Xiaoyi Feng
DOI: https://doi.org/10.1007/s13042-023-01888-5
2023-01-01
International Journal of Machine Learning and Cybernetics
Abstract:Recently, convolutional neural networks have been shown to be sensitive to artificially designed perturbations that are imperceptible to the naked eye. Whether it is image classification, semantic segmentation, or object detection, all of them will face such problem. The existence of adversarial examples raises questions about the security of smart applications. Some works have paid attention to this problem and proposed several defensive strategies to resist adversarial attacks. However, no one explored the vulnerable area of the model under multiple attacks. In this work, we fill this gap by exploring the vulnerable areas of the model, which is vulnerable to adversarial attacks. Specifically, under various attack methods with different strengths, we conduct extensive experiments on two datasets based on three different networks and illustrate some phenomena. Besides, by exploiting the Siamese Network, we propose a novel approach to more intuitively discover the deficiencies of the model. Moreover, we further provide a novel adaptive vulnerable point repair method to improve the adversarial robustness of the model. Extensive experimental results show that our proposed method can effectively improve the adversarial robustness of the model.
What problem does this paper attempt to address?