Abstract
AbstractThe phenomenon of adversarial examples is one of the most attractive topics in machine learning research these days. These are particular cases that are able to mislead neural networks, with critical consequences. For this reason, different approaches are considered to tackle the problem. On the one side, defense mechanisms, such as AutoEncoder-based methods, are able to learn from the distribution of adversarial perturbations to detect them. On the other side, chaos theory and Lyapunov exponents (LEs) have also been shown to be useful to characterize them. This work proposes the combination of both domains. The proposed method employs these exponents to add more information to the loss function that is used during an AutoEncoder training process. As a result, this method achieves a general improvement in adversarial examples detection performance for a wide variety of attack methods.
Funder
Ministerio de Ciencia e Innovación
HORIZON EUROPE Excellent Science
Junta de Comunidades de Castilla-La Mancha
Publisher
Springer Science and Business Media LLC
Reference36 articles.
1. Goodfellow IJ, Shlens J, Szegedy C (2015) Explaining and harnessing adversarial examples. In: International conference on learning representations (ICLR)
2. Li C, Zhu C, Lim C et al (2022) Nonlinear in-plane thermal buckling of rotationally restrained functionally graded carbon nanotube reinforced composite shallow arches under uniform radial loading. Appl Math Mech 43(12):1821–1840
3. Li H, Wang W, Lai S et al (2023) Nonlinear vibration and stability analysis of rotating functionally graded piezoelectric nanobeams. Int J Struct Stabil Dyn 24(9):24501037
4. Zhang YD, Zhang Y, Lv YD et al (2017) Alcoholism detection by medical robots based on hu moment invariants and predator-prey adaptive-inertia chaotic particle swarm optimization. Comput Electr Eng 63:126–138
5. Zhang Y, Wu X, Lu S et al (2016) Smart detection on abnormal breasts in digital mammography based on contrast-limited adaptive histogram equalization and chaotic adaptive real-coded biogeography-based optimization. Simulation 92(9):873–885