Preprocessing defense method aiming at target detection confrontation attack

A target detection and preprocessing technology, applied in image data processing, neural learning methods, instruments, etc., can solve the problems of time-consuming and labor-intensive, poor defense effect, etc., and achieve the effect of improving the detection accuracy.

Pending Publication Date: 2022-07-08
PLA STRATEGIC SUPPORT FORCE INFORMATION ENG UNIV PLA SSF IEU
View PDF0 Cites 1 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] Aiming at the problems of time-consuming, labor-intensive and poor defense effect in the existing way of using confrontational training to defend against target detection against attacks, the present invention provides a preprocessing defense method for target detection against attacks. The time cost requirements are low, and it has robust defense capabilities against most attack methods

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Preprocessing defense method aiming at target detection confrontation attack
  • Preprocessing defense method aiming at target detection confrontation attack
  • Preprocessing defense method aiming at target detection confrontation attack

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0025] In order to make the objectives, technical solutions and advantages of the present invention clearer, the technical solutions in the embodiments of the present invention will be clearly described below with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are part of the present invention. examples, but not all examples. Based on the embodiments of the present invention, all other embodiments obtained by those of ordinary skill in the art without creative efforts shall fall within the protection scope of the present invention.

[0026] like figure 1 As shown, the embodiment of the present invention provides a preprocessing defense method for target detection and confrontation attack, including the following steps:

[0027] S101: Add adversarial perturbations to the images in the original image dataset to generate target detection adversarial samples;

[0028] Specifically, this step includes the f...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a preprocessing defense method for target detection countermeasure attacks. The method comprises the following steps: step 1, adding adversarial disturbance to an image in an original image data set to generate a target detection adversarial sample; 2, performing bilateral filtering and data normalization processing on the target detection confrontation sample to obtain a processed target detection confrontation sample; 3, constructing a noise reduction auto-encoder model, taking the processed target detection confrontation sample as input, taking the corresponding original image as a label, and carrying out noise reduction training on the noise reduction auto-encoder model; 4, acquiring an image to be subjected to target detection, and performing bilateral filtering and data normalization processing on the image to be subjected to target detection to obtain a processed image to be subjected to target detection; and 5, inputting the processed image to be subjected to target detection into the trained noise reduction auto-encoder model to obtain a denoised image to be subjected to target detection, and taking the denoised image to be subjected to target detection as the input of the target detection model to realize target detection.

Description

technical field [0001] The invention relates to the technical field of target detection and confrontation attack defense, in particular to a preprocessing defense method for target detection and confrontation attack. Background technique [0002] Object detection is one of the most basic tasks in computer vision. With the rapid development of object detection applications, it plays an important role in medical images, automatic driving, and pedestrian detection, and its safety is particularly important. However, the object detection based on deep learning inherits the shortcomings of deep networks while having excellent performance, and the field of object detection has been proved to be extremely vulnerable to the attack of adversarial examples. Many studies have introduced the idea of ​​image classification into target detection. Many adversarial attacks of image classification have migrated to the field of target detection. Adversarial methods based on pixel perturbation ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06T7/00G06T3/00G06T5/00G06N3/04G06N3/08
CPCG06T7/0002G06T3/0012G06T5/002G06N3/08G06T2207/20024G06T2207/20081G06T2207/20084G06N3/045
Inventor 孙磊毛秀青汪小芹郭松辉李作辉戴乐育郭松胡翠云张婷臧韦菲张静李楠徐八一
Owner PLA STRATEGIC SUPPORT FORCE INFORMATION ENG UNIV PLA SSF IEU
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products