Chinese Journal of Network and Information Security ›› 2021, Vol. 7 ›› Issue (5): 40-48.doi: 10.11959/j.issn.2096-109x.2021065

• TopicⅠ: Voice Image and Audio-Video Processing • Previous Articles     Next Articles

RSA-based image recognizable adversarial attack method

Yu ZHANG, Hailiang LI   

  1. Jinan University, Guangzhou 510632, China
  • Revised:2021-03-15 Online:2021-10-15 Published:2021-10-01
  • Supported by:
    Key Research and Development Program of Guangdong Province(2020B0101090004);Special Funds for the Cultivation of Guangdong College Students’ Scientific and Technological Innovation(pdjh2021b0058)

Abstract:

Adversarial attack is an important part of deep learning security research.Relying on the RSA signature schemes and RSA encryption schemes in cryptography, an adversarial attack method that adversarial examples can be recognized by a specific classifier is proposed.Through the idea of one pixel attack, the normal image can have the ability to make other classifier misclassify while embedding additional information.It can be used in classifier authorization management, online image anti-counterfeiting, etc.The experiment show that the adversarial examples can be recognized under the specific classifier, and the disturbance noise is difficult to detect by the human eye.

Key words: adversarial attack, signature scheme, encryption scheme, cryptography, classifier, image recognition

CLC Number: 

No Suggested Reading articles found!