RAE-TPE: A Reversible Adversarial Example Generation Method Based on Thumbnail Preserving Encryption

Xiuli Chai,Zhen Chen,Zhihua Gan,Yushu Zhang,Yong Tan
DOI: https://doi.org/10.1109/icspcc59353.2023.10400335
2023-01-01
Abstract:Nowadays, large numbers of private images are stored in the cloud, which may be recognized by unauthorized models, seriously threatening users' privacy security. Although adversarial example (AE) can mislead unauthorized models to protect image privacy, the irreversible perturbations added to images can also mislead the authorized models. Reversible adversarial example (RAE) provides an effective solution that misleads unauthorized models without affecting authorized ones. However, existing RAE generation methods have low attack ability and imperfect image recovery, which makes them unsatisfactory. This paper proposes an RAE generation method that is RAE based on Thumbnail Preserving Encryption (RAE-TPE), where the semantic information of the images is unchanged but the generated RAEs successfully fool traditional classification models. Through decryption, the images can be recovered losslessly. Additionally, we present a novel optimization algorithm called dual annealing evolution (DAE) to enhance the RAEs' visual quality and attack ability. The experimental results on the ImageNet dataset demonstrate that RAEs generated by RAE-TPE show excellent attack ability and robustness.
What problem does this paper attempt to address?