SPN dash: fast detection of adversarial attacks on mobile via sensor pattern noise fingerprinting

ICCAD(2018)

引用 0|浏览34
暂无评分
摘要
ABSTRACTA concerning weakness of deep neural networks is their susceptibility to adversarial attacks. While methods exist to detect these attacks, they incur significant drawbacks, ignoring external features which could aid in the task of attack detection. In this work, we propose SPN Dash, a method for detection of adversarial attacks based on integrity of sensor pattern noise embedded in submitted images. Through experiment, we show that our SPN Dash method is capable of detecting the addition of adversarial noise with up to 94% accuracy for images of size 256×256. Analysis shows that SPN Dash is robust to image scaling techniques, as well as a small amount of image compression. This performance is on par with state of the art neural network-based detectors, while incurring an order of magnitude less computational and memory overhead.
更多
查看译文
关键词
neural network-based detectors,adversarial noise,SPN Dash method,deep neural networks,sensor pattern noise fingerprinting,adversarial attacks
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要