跳到主要导航 跳到搜索 跳到主要内容

A2SC: Adversarial Attacks on Subspace Clustering

  • Yikun Xu
  • , Xingxing Wei*
  • , Pengwen Dai
  • , Xiaochun Cao*
  • *此作品的通讯作者

科研成果: 期刊稿件文章同行评审

摘要

Many studies demonstrate that supervised learning techniques are vulnerable to adversarial examples. However, adversarial threats in unsupervised learning have not drawn sufficient scholarly attention. In this article, we formally address the unexplored adversarial attacks in the equally important unsupervised clustering field and propose the concept of the adversarial set and adversarial set attack for clustering. To illustrate the basic idea, we design a novel adversarial space-mapping attack algorithm to confuse subspace clustering, one of the mainstream branches of unsupervised clustering. It maps a sample into one wrong class by moving it towards the closest point on the linear subspace of the target class, that is, along the normal of the closest point. This simple single-step algorithm has the power to craft the adversarial set where the image samples can be wrongly clustered, even into the targeted labels. Empirical results on different image datasets verify the effectiveness and superiority of our algorithm. We further show that deep supervised learning algorithms (such as VGG and ResNet) are also vulnerable to our crafted adversarial set, which illustrates the good cross-task transferability of the adversarial set.

源语言英语
文章编号191
期刊ACM Transactions on Multimedia Computing, Communications and Applications
19
6
DOI
出版状态已出版 - 12 7月 2023

指纹

探究 'A2SC: Adversarial Attacks on Subspace Clustering' 的科研主题。它们共同构成独一无二的指纹。

引用此