Attack-invariant attention feature for adversarial defense in hyperspectral image classification

被引:7
|
作者
Shi, Cheng [1 ]
Liu, Ying [1 ]
Zhao, Minghua [1 ]
Pun, Chi-Man [2 ]
Miao, Qiguang [3 ]
机构
[1] Xian Univ Technol, Sch Comp Sci & Engn, Xian 710048, Shannxi, Peoples R China
[2] Univ Macau, Dept Comp & Informat Sci, Macau 999078, Peoples R China
[3] Xidian Univ, Sch Comp Sci & Technol, Xian 710071, Shannxi, Peoples R China
基金
中国国家自然科学基金;
关键词
Hyperspectral image classification; Adversarial defense; Attack-invariant attention feature; Adversarial attack; ROBUSTNESS; EXAMPLES;
D O I
10.1016/j.patcog.2023.109955
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Although deep neural networks (DNNs) have achieved excellent performance on hyperspectral image (HSI) classification tasks, their robustness is threatened by carefully created adversarial examples. Therefore, adversarial defense methods have provided an effective defense strategy to protect HSI classification networks. However, most defense models are highly dependent on known types of adversarial examples, which leads to poor generalization to defend against unknown attacks. In this study, we propose an attack-invariant attention feature-based defense (AIAF-Defense) model to improve the generalization ability of the defense model. Specifically, the AIAF-Defense model has an encoder-decoder structure to remove the perturbations from the HSI adversarial examples. We design a feature-disentanglement network as the encoder structure to decouple the attack-invariant spectral-spatial feature and attack-variant feature in the adversarial example and apply a decoder structure to reconstruct the legitimate HSI example. In addition, an attention-guided reconstruction loss is proposed to address the attention-shift problem caused by perturbation and provide an attention constraint for the extraction of attack-invariant attention features. Extensive experiments are conducted on three benchmark hyperspectral image datasets, the PaviaU, HoustonU 2018, and Salinas datasets, and the obtained results show that the proposed AIAF-Defense model improves the defense ability on both known and unknown adversarial attacks. The code is available at https://github.com/AAAA-CS/AIAF_ HyperspectralAdversarialDefense.
引用
收藏
页数:15
相关论文
共 50 条
  • [1] Hyperspectral Image Classification With Adversarial Attack
    Shi, Cheng
    Dang, Yenan
    Fang, Li
    Lv, Zhiyong
    Zhao, Minghua
    IEEE GEOSCIENCE AND REMOTE SENSING LETTERS, 2022, 19
  • [2] Hyperspectral Image Classification with Adversarial Attack
    Shi, Cheng
    Dang, Yenan
    Fang, Li
    Lv, Zhiyong
    Zhao, Minghua
    IEEE Geoscience and Remote Sensing Letters, 2022, 19
  • [3] Towards Defending against Adversarial Examples via Attack-Invariant Features
    Zhou, Dawei
    Liu, Tongliang
    Han, Bo
    Wang, Nannan
    Peng, Chunlei
    Gao, Xinbo
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 139, 2021, 139
  • [4] Spectral-Spatial Attention Feature Extraction for Hyperspectral Image Classification Based on Generative Adversarial Network
    Liang, Hongbo
    Bao, Wenxing
    Shen, Xiangfei
    Zhang, Xiaowu
    IEEE JOURNAL OF SELECTED TOPICS IN APPLIED EARTH OBSERVATIONS AND REMOTE SENSING, 2021, 14 : 10017 - 10032
  • [5] Rotation-Invariant Attention Network for Hyperspectral Image Classification
    Zheng, Xiangtao
    Sun, Hao
    Lu, Xiaoqiang
    Xie, Wei
    IEEE TRANSACTIONS ON IMAGE PROCESSING, 2022, 31 : 4251 - 4265
  • [6] Universal Object-Level Adversarial Attack in Hyperspectral Image Classification
    Shi, Cheng
    Zhang, Mengxin
    Lv, Zhiyong
    Miao, Qiguang
    Pun, Chi-Man
    IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2023, 61 : 1 - 14
  • [7] ADVERSARIAL DEFENSE VIA PERTURBATION-DISENTANGLEMENT IN HYPERSPECTRAL IMAGE CLASSIFICATION
    Shi, Cheng
    Liu, Ying
    Zhao, Minghua
    You, Zhenzhen
    Zhao, Ziyuan
    2023 IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING, ICIP, 2023, : 2935 - 2939
  • [8] A Multibranch Crossover Feature Attention Network for Hyperspectral Image Classification
    Liu, Dongxu
    Wang, Yirui
    Liu, Peixun
    Li, Qingqing
    Yang, Hang
    Chen, Dianbing
    Liu, Zhichao
    Han, Guangliang
    REMOTE SENSING, 2022, 14 (22)
  • [9] Hyperspectral Image Classification with Feature-Oriented Adversarial Active Learning
    Wang, Guangxing
    Ren, Peng
    REMOTE SENSING, 2020, 12 (23) : 1 - 19
  • [10] A Feature Embedding Network with Multiscale Attention for Hyperspectral Image Classification
    Liu, Yi
    Zhu, Jian
    Feng, Jiajie
    Mu, Caihong
    REMOTE SENSING, 2023, 15 (13)