A New Context-Aware Framework for Defending Against Adversarial Attacks in Hyperspectral Image Classification

被引:22
|
作者
Tu, Bing [1 ]
He, Wangquan [2 ]
Li, Qianming [3 ]
Peng, Yishu [3 ]
Plaza, Antonio [4 ]
机构
[1] Nanjing Univ Informat Sci & Technol, Inst Opt & Elect, Jiangsu Key Lab Optoelect Detect Atmosphere & Oce, Jiangsu Int Joint Lab Meteorol Photon & Optoelect, Nanjing 210044, Peoples R China
[2] Shenzhen Univ, Coll Comp Sci & Software Engn, Shenzhen 518060, Peoples R China
[3] Hunan Inst Sci & Technol, Sch Informat Sci & Technol, Yueyang 414000, Peoples R China
[4] Univ Extremadura, Dept Technol Comp & Commun, Hyperspectral Comp Lab, Escuela Politecn, Caceres 10003, Spain
基金
中国国家自然科学基金;
关键词
Adversarial attacks; adversarial samples; deep learning; global context; hyperspectral images (HSIs); NETWORKS; EXAMPLES;
D O I
10.1109/TGRS.2023.3250450
中图分类号
P3 [地球物理学]; P59 [地球化学];
学科分类号
0708 ; 070902 ;
摘要
Deep neural networks play a significant role in hyperspectral image (HSI) processing, yet they can be easily fooled when trained with adversarial samples (generated by adding tiny perturbations to clean samples). These perturbations are invisible to the human eye, but can easily lead to misclassification by the deep learning model. Recent research on defense against adversarial samples in HSI classification has improved the robustness of deep networks by exploiting global contextual information. However, available methods do not distinguish between different classes of contextual information, which makes the global context unreliable and increases the success rate of attacks. To solve this problem, we propose a robust context-aware network able to defend against adversarial samples in HSI classification. The proposed model generates a global contextual representation by aggregating the features learned via dilated convolution, and then explicitly models intraclass and interclass contextual information by constructing a class context-aware learning module (including affinity loss) to further refine the global context. The module helps pixels obtain more reliable long-range dependencies and improves the overall robustness of the model against adversarial attacks. Experiments on several benchmark HSI datasets demonstrate that the proposed method is more robust and exhibits better generalization than other advanced techniques.
引用
收藏
页数:14
相关论文
共 50 条
  • [1] On the Effectiveness of Adversarial Training in Defending against Adversarial Example Attacks for Image Classification
    Park, Sanglee
    So, Jungmin
    APPLIED SCIENCES-BASEL, 2020, 10 (22): : 1 - 16
  • [2] Hyperspectral Image Classification With Context-Aware Dynamic Graph Convolutional Network
    Wan, Sheng
    Gong, Chen
    Zhong, Ping
    Pan, Shirui
    Li, Guangyu
    Yang, Jian
    IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2021, 59 (01): : 597 - 612
  • [3] Feature-aware transferable adversarial attacks against image classification
    Cheng, Shuyan
    Li, Peng
    Han, Keji
    Xu, He
    APPLIED SOFT COMPUTING, 2024, 161
  • [4] Context-Aware Compressed Sensing of Hyperspectral Image
    Fu, Wei
    Lu, Ting
    Li, Shutao
    IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2020, 58 (01): : 268 - 280
  • [5] Multiscale Context-Aware Ensemble Deep KELM for Efficient Hyperspectral Image Classification
    Xi, Bobo
    Li, Jiaojiao
    Li, Yunsong
    Song, Rui
    Sun, Weiwei
    Du, Qian
    IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2021, 59 (06): : 5114 - 5130
  • [6] Geostatistics for Context-Aware Image Classification
    Codevilla, Felipe
    Botelho, Silvia S. C.
    Duarte, Nelson
    Purkis, Samuel
    Shihavuddin, A. S. M.
    Garcia, Rafael
    Gracias, Nuno
    COMPUTER VISION SYSTEMS (ICVS 2015), 2015, 9163 : 228 - 239
  • [7] Context-Aware Attentional Graph U-Net for Hyperspectral Image Classification
    Lin, Moule
    Jing, Weipeng
    Di, Donglin
    Chen, Guangsheng
    Song, Houbing
    IEEE GEOSCIENCE AND REMOTE SENSING LETTERS, 2022, 19
  • [8] Evidential classification for defending against adversarial attacks on network traffic
    Beechey, Matthew
    Lambotharan, Sangarapillai
    Kyriakopoulos, Konstantinos G.
    INFORMATION FUSION, 2023, 92 : 115 - 126
  • [9] Defending Adversarial Attacks against DNN Image Classification Models by a Noise-Fusion Method
    Shi, Lin
    Liao, Teyi
    He, Jianfeng
    ELECTRONICS, 2022, 11 (12)
  • [10] APNet: A Novel Antiperturbation Network for Robust Hyperspectral Image Classification Against Adversarial Attacks
    Zhao, Lin
    Zhang, Youlin
    Shi, Chengzhong
    Zhao, Minhui
    Wu, Jianhui
    Li, Wen
    IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2024, 62