CDTA: A Cross-Domain Transfer-Based Attack with Contrastive Learning

被引:0
|
作者
Li, Zihan [1 ]
Wu, Weibin [1 ]
Su, Yuxin [1 ]
Zheng, Zibin [1 ]
Lyu, Michael R. [2 ]
机构
[1] Sun Yat Sen Univ, Sch Software Engn, Guangzhou, Peoples R China
[2] Chinese Univ Hong Kong, Dept Comp Sci & Engn, Hong Kong, Peoples R China
基金
中国国家自然科学基金; 国家重点研发计划;
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Despite the excellent performance, deep neural networks (DNNs) have been shown to be vulnerable to adversarial examples. Besides, these examples are often transferable among different models. In other words, the same adversarial example can fool multiple models with different architectures at the same time. Based on this property, many black-box transfer-based attack techniques have been developed. However, current transfer-based attacks generally focus on the cross-architecture setting, where the attacker has access to the training data of the target model, which is not guaranteed in realistic situations. In this paper, we design a Cross-Domain Transfer-Based Attack (CDTA), which works in the cross-domain scenario. In this setting, attackers have no information about the target model, such as its architecture and training data. Specifically, we propose a contrastive spectral training method to train a feature extractor on a source domain (e.g., ImageNet) and use it to craft adversarial examples on target domains (e.g., Oxford 102 Flower). Our method corrupts the semantic information of the benign image by scrambling the outputs of both the intermediate feature layers and the final layer of the feature extractor. We evaluate CDTA with 16 target deep models on four datasets with widely varying styles. The results confirm that, in terms of the attack success rate, our approach can consistently outperform the state-of-the-art baselines by an average of 11.45% across all target models. Our code is available at https://github.com/LiulietLee/CDTA.
引用
收藏
页码:1530 / 1538
页数:9
相关论文
共 50 条
  • [41] Softly Associative Transfer Learning for Cross-Domain Classification
    Wang, Deqing
    Lu, Chenwei
    Wu, Junjie
    Liu, Hongfu
    Zhang, Wenjie
    Zhuang, Fuzhen
    Zhang, Hui
    IEEE TRANSACTIONS ON CYBERNETICS, 2020, 50 (11) : 4709 - 4721
  • [42] A Collaborative Transfer Learning Framework for Cross-domain Recommendation
    Zhang, Wei
    Zhang, Pengye
    Zhang, Bo
    Wang, Xingxing
    Wang, Dong
    PROCEEDINGS OF THE 29TH ACM SIGKDD CONFERENCE ON KNOWLEDGE DISCOVERY AND DATA MINING, KDD 2023, 2023, : 5576 - 5585
  • [43] Cross-Domain Transfer Learning for PCG Diagnosis Algorithm
    Tseng, Kuo-Kun
    Wang, Chao
    Huang, Yu-Feng
    Chen, Guan-Rong
    Yung, Kai-Leung
    Ip, Wai-Hung
    BIOSENSORS-BASEL, 2021, 11 (04):
  • [44] Deep Transfer Learning for Cross-domain Activity Recognition
    Wang, Jindong
    Zheng, Vincent W.
    Chen, Yiqiang
    Huang, Meiyu
    PROCEEDINGS OF THE 3RD INTERNATIONAL CONFERENCE ON CROWD SCIENCE AND ENGINEERING (ICCSE 2018), 2018,
  • [45] Cross-Domain Latent Modulation for Variational Transfer Learning
    Hou, Jinyong
    Deng, Jeremiah D.
    Cranefield, Stephen
    Ding, Xuejie
    2021 IEEE WINTER CONFERENCE ON APPLICATIONS OF COMPUTER VISION WACV 2021, 2021, : 3148 - 3157
  • [46] A transfer learning approach to cross-domain authorship attribution
    Barlas, Georgios
    Stamatatos, Efstathios
    EVOLVING SYSTEMS, 2021, 12 (03) : 625 - 643
  • [47] Stratified Transfer Learning for Cross-domain Activity Recognition
    Wang, Jindong
    Chen, Yiqiang
    Hu, Lisha
    Peng, Xiaohui
    Yu, Philip S.
    2018 IEEE INTERNATIONAL CONFERENCE ON PERVASIVE COMPUTING AND COMMUNICATIONS (PERCOM), 2018, : 115 - 124
  • [48] A transfer learning approach to cross-domain authorship attribution
    Georgios Barlas
    Efstathios Stamatatos
    Evolving Systems, 2021, 12 : 625 - 643
  • [49] Ontology-Driven Cross-Domain Transfer Learning
    Fumagalli, Mattia
    Bella, Gabor
    Conti, Samuele
    Giunchiglia, Fausto
    FORMAL ONTOLOGY IN INFORMATION SYSTEMS, FOIS 2020, 2020, 330 : 249 - 263
  • [50] Dyadic Transfer Learning for Cross-Domain Image Classification
    Wang, Hua
    Nie, Feiping
    Huang, Heng
    Ding, Chris
    2011 IEEE INTERNATIONAL CONFERENCE ON COMPUTER VISION (ICCV), 2011, : 551 - 556