Universal Adversarial Examples in Remote Sensing: Methodology and Benchmark

被引:61
|
作者
Xu, Yonghao [1 ]
Ghamisi, Pedram [1 ,2 ]
机构
[1] Inst Adv Res Artificial Intelligence IARAI, A-1030 Vienna, Austria
[2] Helmholtz Zenuum Dresden Rossendorf, Machine Learning Grp, Helmholtz Inst Freiberg Resource Technol, D-09599 Freiberg, Germany
关键词
Remote sensing; Neural networks; Deep learning; Perturbation methods; Task analysis; Forestry; Optimization; Adversarial attack; adversarial example; remote sensing; scene classification; semantic segmentation; DATA FUSION; ATTACKS;
D O I
10.1109/TGRS.2022.3156392
中图分类号
P3 [地球物理学]; P59 [地球化学];
学科分类号
0708 ; 070902 ;
摘要
Deep neural networks have achieved great success in many important remote sensing tasks. Nevertheless, their vulnerability to adversarial examples should not be neglected. In this study, we systematically analyze the Universal Adversarial Examples in Remote Sensing (UAE-RS) data for the first time, without any knowledge from the victim model. Specifically, we propose a novel black-box adversarial attack method, namely, Mixup-Attack, and its simple variant Mixcut-Attack, for remote sensing data. The key idea of the proposed methods is to find common vulnerabilities among different networks by attacking the features in the shallow layer of a given surrogate model. Despite their simplicity, the proposed methods can generate transferable adversarial examples that deceive most of the state-of-the-art deep neural networks in both scene classification and semantic segmentation tasks with high success rates. We further provide the generated universal adversarial examples in the dataset named UAE-RS, which is the first dataset that provides black-box adversarial samples in the remote sensing field. We hope UAE-RS may serve as a benchmark that helps researchers design deep neural networks with strong resistance toward adversarial attacks in the remote sensing field. Codes and the UAE-RS dataset are available online (https://github.com/YonghaoXu/UAE-RS).
引用
收藏
页数:15
相关论文
共 50 条
  • [21] Towards universal and sparse adversarial examples for visual object tracking
    Sheng, Jingjing
    Zhang, Dawei
    Chen, Jianxin
    Xiao, Xin
    Zheng, Zhonglong
    APPLIED SOFT COMPUTING, 2024, 153
  • [22] Adversarial perturbation in remote sensing image recognition
    Ai, Shan
    Koe, Arthur Sandor Voundi
    Huang, Teng
    APPLIED SOFT COMPUTING, 2021, 105
  • [23] Generating Natural Adversarial Remote Sensing Images
    Burnel, Jean-Christophe
    Fatras, Kilian
    Flamary, Remi
    Courty, Nicolas
    IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2022, 60
  • [24] UCG: A Universal Cross-Domain Generator for Transferable Adversarial Examples
    Li, Zhankai
    Wang, Weiping
    Li, Jie
    Chen, Kai
    Zhang, Shigeng
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 3023 - 3037
  • [25] MDAS: a new multimodal benchmark dataset for remote sensing
    Hu, Jingliang
    Liu, Rong
    Hong, Danfeng
    Camero, Andres
    Yao, Jing
    Schneider, Mathias
    Kurz, Franz
    Segl, Karl
    Zhu, Xiao Xiang
    EARTH SYSTEM SCIENCE DATA, 2023, 15 (01) : 113 - 131
  • [26] DEVELOPMENT OF A DATABASE FOR BENCHMARK DATASETS IN PHOTOGRAMMETRY AND REMOTE SENSING
    Budde, Lina E.
    Schmidt, Jakob
    Javanmard-Ghareshiran, Arash
    Hunger, Sebastian
    Iwaszczuk, Dorota
    XXIV ISPRS CONGRESS: IMAGING TODAY, FORESEEING TOMORROW, COMMISSION I, 2022, 5-1 : 187 - 193
  • [27] Benchmark examples
    不详
    ROBUST CONTROL OF INFINITE DIMENSIONAL SYSTEMS, 1996, 209 : 153 - 168
  • [28] Detection of Adversarial Examples in Text Classification: Benchmark and Baseline via Robust Density Estimation
    Yoo, KiYoon
    Kim, Jangho
    Jang, Jiho
    Kwak, Nojun
    FINDINGS OF THE ASSOCIATION FOR COMPUTATIONAL LINGUISTICS (ACL 2022), 2022, : 3656 - 3672
  • [29] REMOTE SENSING DATA AUGMENTATION THROUGH ADVERSARIAL TRAINING
    Lv, Ning
    Ma, Hongxiang
    Chen, Chen
    Pei, Qingqi
    Zhou, Yang
    Xiao, Fenglin
    Li, Ji
    IGARSS 2020 - 2020 IEEE INTERNATIONAL GEOSCIENCE AND REMOTE SENSING SYMPOSIUM, 2020, : 2511 - 2514
  • [30] Generative Adversarial Network for Deblurring of Remote Sensing Image
    Zhang, Yungang
    Xiang, Yu
    Bai, Lei
    2018 26TH INTERNATIONAL CONFERENCE ON GEOINFORMATICS (GEOINFORMATICS 2018), 2018,