Attack-invariant attention feature for adversarial defense in hyperspectral image classification

被引:7
|
作者
Shi, Cheng [1 ]
Liu, Ying [1 ]
Zhao, Minghua [1 ]
Pun, Chi-Man [2 ]
Miao, Qiguang [3 ]
机构
[1] Xian Univ Technol, Sch Comp Sci & Engn, Xian 710048, Shannxi, Peoples R China
[2] Univ Macau, Dept Comp & Informat Sci, Macau 999078, Peoples R China
[3] Xidian Univ, Sch Comp Sci & Technol, Xian 710071, Shannxi, Peoples R China
基金
中国国家自然科学基金;
关键词
Hyperspectral image classification; Adversarial defense; Attack-invariant attention feature; Adversarial attack; ROBUSTNESS; EXAMPLES;
D O I
10.1016/j.patcog.2023.109955
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Although deep neural networks (DNNs) have achieved excellent performance on hyperspectral image (HSI) classification tasks, their robustness is threatened by carefully created adversarial examples. Therefore, adversarial defense methods have provided an effective defense strategy to protect HSI classification networks. However, most defense models are highly dependent on known types of adversarial examples, which leads to poor generalization to defend against unknown attacks. In this study, we propose an attack-invariant attention feature-based defense (AIAF-Defense) model to improve the generalization ability of the defense model. Specifically, the AIAF-Defense model has an encoder-decoder structure to remove the perturbations from the HSI adversarial examples. We design a feature-disentanglement network as the encoder structure to decouple the attack-invariant spectral-spatial feature and attack-variant feature in the adversarial example and apply a decoder structure to reconstruct the legitimate HSI example. In addition, an attention-guided reconstruction loss is proposed to address the attention-shift problem caused by perturbation and provide an attention constraint for the extraction of attack-invariant attention features. Extensive experiments are conducted on three benchmark hyperspectral image datasets, the PaviaU, HoustonU 2018, and Salinas datasets, and the obtained results show that the proposed AIAF-Defense model improves the defense ability on both known and unknown adversarial attacks. The code is available at https://github.com/AAAA-CS/AIAF_ HyperspectralAdversarialDefense.
引用
收藏
页数:15
相关论文
共 50 条
  • [21] Adversarial Prototype Learning for Hyperspectral Image Classification
    Wang, Shuai
    Du, Bo
    Zhang, Dingwen
    Wan, Fang
    IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2022, 60
  • [22] Adversarial Prototype Learning for Hyperspectral Image Classification
    Wang, Shuai
    Du, Bo
    Zhang, Dingwen
    Wan, Fang
    IEEE Transactions on Geoscience and Remote Sensing, 2022, 60
  • [23] Generative Adversarial Networks for Hyperspectral Image Classification
    Zhu, Lin
    Chen, Yushi
    Ghamisi, Pedram
    Benediktsson, Jon Atli
    IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2018, 56 (09): : 5046 - 5063
  • [24] A UNIVERSAL ADVERSARIAL ATTACK ON CNN-SAR IMAGE CLASSIFICATION BY FEATURE DICTIONARY MODELING
    Qin, Wei-Bo
    Wang, Feng
    2022 IEEE INTERNATIONAL GEOSCIENCE AND REMOTE SENSING SYMPOSIUM (IGARSS 2022), 2022, : 1027 - 1030
  • [25] Feature Extraction for Hyperspectral Image Classification
    Uddin, M. P.
    Mamun, M. A.
    Hossain, M. A.
    2017 IEEE REGION 10 HUMANITARIAN TECHNOLOGY CONFERENCE (R10-HTC), 2017, : 379 - 382
  • [26] Feature reduction of hyperspectral image for classification
    Islam, Rashedul
    Ahmed, Boshir
    Hossain, Ali
    JOURNAL OF SPATIAL SCIENCE, 2022, 67 (02) : 331 - 351
  • [27] Feature Mining for Hyperspectral Image Classification
    Jia, Xiuping
    Kuo, Bor-Chen
    Crawford, Melba M.
    PROCEEDINGS OF THE IEEE, 2013, 101 (03) : 676 - 697
  • [28] Global Feature Attention Network: Addressing the Threat of Adversarial Attack for Aerial Image Semantic Segmentation
    Wang, Zhen
    Wang, Buhong
    Liu, Yaohui
    Guo, Jianxin
    REMOTE SENSING, 2023, 15 (05)
  • [29] Self-Attention Context Network: Addressing the Threat of Adversarial Attacks for Hyperspectral Image Classification
    Xu, Yonghao
    Du, Bo
    Zhang, Liangpei
    IEEE TRANSACTIONS ON IMAGE PROCESSING, 2021, 30 : 8671 - 8685
  • [30] Adaptive Weighting Feature Fusion Approach Based on Generative Adversarial Network for Hyperspectral Image Classification
    Liang, Hongbo
    Bao, Wenxing
    Shen, Xiangfei
    REMOTE SENSING, 2021, 13 (02) : 1 - 25