On the adversarial robustness of generative autoencoders in the latent space

被引:0
|
作者
Lu, Mingfei [1 ,2 ]
Chen, Badong [1 ,2 ]
机构
[1] Xi An Jiao Tong Univ, Natl Engn Res Ctr Visual Informat & Applicat, Natl Key Lab Human Machine Hybrid Augmented Intell, Xian 710049, Peoples R China
[2] Xi An Jiao Tong Univ, Inst Artificial Intelligence & Robot, Xian 710049, Peoples R China
关键词
Generative autoencoders; Adversarial robustness; Latent space; Adversarial training; VARIATIONAL AUTOENCODER;
D O I
10.1007/s00521-024-09438-y
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The generative autoencoders, such as the variational autoencoders or the adversarial autoencoders, have achieved great success in lots of real-world applications, including image generation and signal communication. However, little concern has been devoted to their robustness during practical deployment. Due to the probabilistic latent structure, variational autoencoders (VAEs) may confront problems such as a mismatch between the posterior distribution of the latent and real data manifold, or discontinuity in the posterior distribution of the latent. This leaves a back door for malicious attackers to collapse VAEs from the latent space, especially in scenarios where the encoder and decoder are used separately, such as communication and compressed sensing. In this work, we provide the first study on the adversarial robustness of generative autoencoders in the latent space. Specifically, we empirically demonstrate the latent vulnerability of popular generative autoencoders through attacks in the latent space. We also evaluate the difference between variational autoencoders and their deterministic variants and observe that the latter performs better in latent robustness. Meanwhile, we identify a potential trade-off between the adversarial robustness and the degree of the disentanglement of the latent codes. Additionally, we also verify the feasibility of improvement for the latent robustness of generative autoencoders through adversarial training. In summary, we suggest concerning the adversarial latent robustness of the generative autoencoders, analyze several robustness-relative issues, and give some insights into a series of key challenges.
引用
收藏
页码:8109 / 8123
页数:15
相关论文
共 50 条
  • [21] Generative Probabilistic Novelty Detection with Isometric Adversarial Autoencoders
    Almohsen, Ranya
    Keaton, Matthew R.
    Adjeroh, Donald A.
    Doretto, Gianfranco
    2022 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION WORKSHOPS, CVPRW 2022, 2022, : 2002 - 2012
  • [22] Tessellating the Latent Space for Non-Adversarial Generative Auto-Encoders
    Gai, Kuo
    Zhang, Shihua
    IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2024, 46 (02) : 780 - 792
  • [23] Evolving Mario Levels in the Latent Space of a Deep Convolutional Generative Adversarial Network
    Volz, Vanessa
    Schrum, Jacob
    Liu, Jialin
    Lucas, Simon M.
    Smith, Adam
    Risi, Sebastian
    GECCO'18: PROCEEDINGS OF THE 2018 GENETIC AND EVOLUTIONARY COMPUTATION CONFERENCE, 2018, : 221 - 228
  • [24] Improving the robustness of steganalysis in the adversarial environment with Generative Adversarial Network
    Peng, Ye
    Yu, Qi
    Fu, Guobin
    Zhang, WenWen
    Duan, ChaoFan
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2024, 82
  • [25] Adversarial autoencoders with constant-curvature latent manifolds
    Grattarola, Daniele
    Livi, Lorenzo
    Alippi, Cesare
    APPLIED SOFT COMPUTING, 2019, 81
  • [26] Robustness and Generalization via Generative Adversarial Training
    Poursaeed, Omid
    Jiang, Tianxing
    Yang, Harry
    Belongie, Serge
    Lim, Ser-Nam
    2021 IEEE/CVF INTERNATIONAL CONFERENCE ON COMPUTER VISION (ICCV 2021), 2021, : 15691 - 15700
  • [27] Dual Autoencoders Generative Adversarial Network for Imbalanced Classification Problem
    Wu, Ensen
    Cui, Hongyan
    Welsch, Roy E.
    IEEE ACCESS, 2020, 8 : 91265 - 91275
  • [28] Synthesizing credit data using autoencoders and generative adversarial networks
    Oreski, Goran
    KNOWLEDGE-BASED SYSTEMS, 2023, 274
  • [29] Variational Autoencoders and Generative Adversarial Networks for Multivariate Scenario Generation
    Michele Carbonera
    Michele Ciavotta
    Enza Messina
    Data Science for Transportation, 2024, 6 (3):
  • [30] Dual linear latent space constrained generative adversarial networks for hyperspectral image classification
    Mou, Kefen
    Gao, Sha
    Deveci, Muhammet
    Kadry, Seifedine
    APPLIED SOFT COMPUTING, 2025, 174