CDTA: A Cross-Domain Transfer-Based Attack with Contrastive Learning

被引:0
|
作者
Li, Zihan [1 ]
Wu, Weibin [1 ]
Su, Yuxin [1 ]
Zheng, Zibin [1 ]
Lyu, Michael R. [2 ]
机构
[1] Sun Yat Sen Univ, Sch Software Engn, Guangzhou, Peoples R China
[2] Chinese Univ Hong Kong, Dept Comp Sci & Engn, Hong Kong, Peoples R China
基金
中国国家自然科学基金; 国家重点研发计划;
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Despite the excellent performance, deep neural networks (DNNs) have been shown to be vulnerable to adversarial examples. Besides, these examples are often transferable among different models. In other words, the same adversarial example can fool multiple models with different architectures at the same time. Based on this property, many black-box transfer-based attack techniques have been developed. However, current transfer-based attacks generally focus on the cross-architecture setting, where the attacker has access to the training data of the target model, which is not guaranteed in realistic situations. In this paper, we design a Cross-Domain Transfer-Based Attack (CDTA), which works in the cross-domain scenario. In this setting, attackers have no information about the target model, such as its architecture and training data. Specifically, we propose a contrastive spectral training method to train a feature extractor on a source domain (e.g., ImageNet) and use it to craft adversarial examples on target domains (e.g., Oxford 102 Flower). Our method corrupts the semantic information of the benign image by scrambling the outputs of both the intermediate feature layers and the final layer of the feature extractor. We evaluate CDTA with 16 target deep models on four datasets with widely varying styles. The results confirm that, in terms of the attack success rate, our approach can consistently outperform the state-of-the-art baselines by an average of 11.45% across all target models. Our code is available at https://github.com/LiulietLee/CDTA.
引用
收藏
页码:1530 / 1538
页数:9
相关论文
共 50 条
  • [31] NaCL: noise-robust cross-domain contrastive learning for unsupervised domain adaptation
    Jingzheng Li
    Hailong Sun
    Machine Learning, 2023, 112 : 3473 - 3496
  • [32] Contrastive Learning-Based Cross-Domain Data Augmentation for Aspect-Based Sentiment Analysis
    Xue, Xiaoling
    Xu, Bin
    Dong, Xiaodi
    Cai, Qihang
    Gao, Kening
    WEB INFORMATION SYSTEMS AND APPLICATIONS, WISA 2024, 2024, 14883 : 180 - 188
  • [33] Cross-Domain 3D Model Retrieval Based On Contrastive Learning and Label Propagation
    Song, Dan
    Yang, Yue
    Nie, Weizhi
    Li, Xuanya
    Liu, An-An
    PROCEEDINGS OF THE 30TH ACM INTERNATIONAL CONFERENCE ON MULTIMEDIA, MM 2022, 2022,
  • [34] Beyond Users: Denoising Behavior-based Contrastive Learning for Disentangled Cross-Domain Recommendation
    Sun, Lele
    Liu, Jing
    Zhang, Shenyuan
    Nie, Weizhi
    Liu, Anan
    Su, Yuting
    DATABASE SYSTEMS FOR ADVANCED APPLICATIONS, DASFAA 2024, PT 2, 2025, 14851 : 163 - 178
  • [35] A Federated Learning-Based Approach for Predicting Cross-Domain Network Attack Behavior
    Hao, Jiakai
    Jin, Ming
    Zhao, Guanghuai
    Li, Zhiyi
    Chen, Jinqian
    Li, Yuting
    Li, Xiaohui
    PROCEEDINGS OF THE 13TH INTERNATIONAL CONFERENCE ON COMPUTER ENGINEERING AND NETWORKS, VOL II, CENET 2023, 2024, 1126 : 221 - 229
  • [36] SAR Target Recognition Based on Cross-Domain and Cross-Task Transfer Learning
    Wang, Ke
    Zhang, Gong
    Leung, Henry
    IEEE ACCESS, 2019, 7 : 153391 - 153399
  • [37] A Coherent Cooperative Learning Framework Based on Transfer Learning for Unsupervised Cross-Domain Classification
    Shan, Xinxin
    Wen, Ying
    Li, Qingli
    Lu, Yue
    Cai, Haibin
    MEDICAL IMAGE COMPUTING AND COMPUTER ASSISTED INTERVENTION - MICCAI 2021, PT V, 2021, 12905 : 96 - 106
  • [38] A New Transfer Learning Model for Cross-Domain Recommendation
    State Key Laboratory of Software Engineering, School of Computer Science, Wuhan University, Wuhan
    430072, China
    不详
    430212, China
    Jisuanji Xuebao, 10 (2367-2380):
  • [39] Cross-Domain Transfer Learning for Complex hmotion Recognition
    Nagarajan, Bhalaji
    Oruganti, V. Ramana Murthy
    PROCEEDINGS OF 2019 IEEE REGION 10 SYMPOSIUM (TENSYMP), 2019, : 649 - 653
  • [40] Adversarial transfer learning for cross-domain visual recognition
    Wang, Shanshan
    Zhang, Lei
    Fu, Jingru
    KNOWLEDGE-BASED SYSTEMS, 2020, 204