论文标题

通过Stega眼镜的对抗图像

Adversarial Images through Stega Glasses

论文作者

Bonnet, Benoît, Furon, Teddy, Bas, Patrick

论文摘要

本文探讨了隐肌和对抗图像之间的联系。一方面,Ste-结构有助于检测对抗性扰动。另一方面,隐肌有助于锻造对抗性扰动,这些扰动不仅对人眼看不见,而且在统计上是无法检测的。这项工作说明了如何使用这些信息隐藏工具来攻击或捍卫计算机视觉图像分类。我们使用最先进的分类器,Steganalyzers和Betanographic嵌入方案玩此猫和鼠标游戏。事实证明,隐身术对攻击者的帮助比防守者更多。

This paper explores the connection between steganography and adversarial images. On the one hand, ste-ganalysis helps in detecting adversarial perturbations. On the other hand, steganography helps in forging adversarial perturbations that are not only invisible to the human eye but also statistically undetectable. This work explains how to use these information hiding tools for attacking or defending computer vision image classification. We play this cat and mouse game with state-of-art classifiers, steganalyzers, and steganographic embedding schemes. It turns out that steganography helps more the attacker than the defender.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源