On the adversarial robustness of generative autoencoders in the latent space

被引:0
|
作者
Lu, Mingfei [1 ,2 ]
Chen, Badong [1 ,2 ]
机构
[1] Xi An Jiao Tong Univ, Natl Engn Res Ctr Visual Informat & Applicat, Natl Key Lab Human Machine Hybrid Augmented Intell, Xian 710049, Peoples R China
[2] Xi An Jiao Tong Univ, Inst Artificial Intelligence & Robot, Xian 710049, Peoples R China
关键词
Generative autoencoders; Adversarial robustness; Latent space; Adversarial training; VARIATIONAL AUTOENCODER;
D O I
10.1007/s00521-024-09438-y
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The generative autoencoders, such as the variational autoencoders or the adversarial autoencoders, have achieved great success in lots of real-world applications, including image generation and signal communication. However, little concern has been devoted to their robustness during practical deployment. Due to the probabilistic latent structure, variational autoencoders (VAEs) may confront problems such as a mismatch between the posterior distribution of the latent and real data manifold, or discontinuity in the posterior distribution of the latent. This leaves a back door for malicious attackers to collapse VAEs from the latent space, especially in scenarios where the encoder and decoder are used separately, such as communication and compressed sensing. In this work, we provide the first study on the adversarial robustness of generative autoencoders in the latent space. Specifically, we empirically demonstrate the latent vulnerability of popular generative autoencoders through attacks in the latent space. We also evaluate the difference between variational autoencoders and their deterministic variants and observe that the latter performs better in latent robustness. Meanwhile, we identify a potential trade-off between the adversarial robustness and the degree of the disentanglement of the latent codes. Additionally, we also verify the feasibility of improvement for the latent robustness of generative autoencoders through adversarial training. In summary, we suggest concerning the adversarial latent robustness of the generative autoencoders, analyze several robustness-relative issues, and give some insights into a series of key challenges.
引用
收藏
页码:8109 / 8123
页数:15
相关论文
共 50 条
  • [1] Latent Space Conditioning on Generative Adversarial Networks
    Durall, Ricard
    Ho, Kalun
    Pfreundt, Franz-Josef
    Keuper, Janis
    VISAPP: PROCEEDINGS OF THE 16TH INTERNATIONAL JOINT CONFERENCE ON COMPUTER VISION, IMAGING AND COMPUTER GRAPHICS THEORY AND APPLICATIONS - VOL. 4: VISAPP, 2021, : 24 - 34
  • [2] Facial Attribute Editing by Latent Space Adversarial Variational Autoencoders
    Li, Defang
    Zhang, Min
    Chen, Weifu
    Feng, Guocan
    2018 24TH INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION (ICPR), 2018, : 1337 - 1342
  • [3] Improving Generative Adversarial Networks via Adversarial Learning in Latent Space
    Li, Yang
    Mo, Yichuan
    Shi, Liangliang
    Yan, Junchi
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 35 (NEURIPS 2022), 2022,
  • [4] Evolutionary Latent Space Exploration of Generative Adversarial Networks
    Fernandes, Paulo
    Correia, Joao
    Machado, Penousal
    APPLICATIONS OF EVOLUTIONARY COMPUTATION, EVOAPPLICATIONS 2020, 2020, 12104 : 595 - 609
  • [5] A Latent Space Understandable Generative Adversarial Network: SelfExGAN
    Liu, Yongjie
    Wang, Qianlong
    Gu, Yanlei
    Kamijo, Shunsuke
    2017 INTERNATIONAL CONFERENCE ON DIGITAL IMAGE COMPUTING - TECHNIQUES AND APPLICATIONS (DICTA), 2017, : 353 - 360
  • [6] ClusterGAN: Latent Space Clustering in Generative Adversarial Networks
    Mukherjee, Sudipto
    Asnani, Himanshu
    Lin, Eugene
    Kannan, Sreeram
    THIRTY-THIRD AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE / THIRTY-FIRST INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE CONFERENCE / NINTH AAAI SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2019, : 4610 - 4617
  • [7] Generating Adversarial Examples through Latent Space Exploration of Generative Adversarial Networks
    Clare, Luana
    Correia, Joao
    PROCEEDINGS OF THE 2023 GENETIC AND EVOLUTIONARY COMPUTATION CONFERENCE COMPANION, GECCO 2023 COMPANION, 2023, : 1760 - 1767
  • [8] A pore space reconstruction method of shale based on autoencoders and generative adversarial networks
    Zhang, Ting
    Li, Deya
    Lu, Fangfang
    COMPUTATIONAL GEOSCIENCES, 2021, 25 (06) : 2149 - 2165
  • [9] A pore space reconstruction method of shale based on autoencoders and generative adversarial networks
    Ting Zhang
    Deya Li
    Fangfang Lu
    Computational Geosciences, 2021, 25 : 2149 - 2165
  • [10] Illuminating Mario Scenes in the Latent Space of a Generative Adversarial Network
    Fontaine, Matthew C.
    Liu, Ruilin
    Khalifa, Ahmed
    Modi, Jignesh
    Togelius, Julian
    Hoover, Amy K.
    Nikolaidis, Stefanos
    THIRTY-FIFTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, THIRTY-THIRD CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE AND THE ELEVENTH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2021, 35 : 5922 - 5930