跳到主要导航 跳到搜索 跳到主要内容

Defense for adversarial videos by self-adaptive JPEG compression and optical texture

  • Yupeng Cheng
  • , Xingxing Wei*
  • , Huazhu Fu
  • , Shang Wei Lin
  • , Weisi Lin
  • *此作品的通讯作者
  • Nanyang Technological University
  • Inception Institute of Artificial Intelligence

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

Despite demonstrated outstanding effectiveness in various computer vision tasks, Deep Neural Networks (DNNs) are known to be vulnerable to adversarial examples. Nowadays, adversarial attacks as well as their defenses w.r.t. DNNs in image domain have been intensively studied, and there are some recent works starting to explore adversarial attacks w.r.t. DNNs in video domain. However, the corresponding defense is rarely studied. In this paper, we propose a new two-stage framework for defending video adversarial attack. It contains two main components, namely self-adaptive Joint Photographic Experts Group (JPEG) compression defense and optical texture based defense (OTD). In self-adaptive JPEG compression defense, we propose to adaptively choose an appropriate JPEG quality based on an estimation of moving foreground object, such that the JPEG compression could depress most impact of adversarial noise without losing too much video quality. In OTD, we generate "optical texture"containing high-frequency information based on the optical flow map, and use it to edit Y channel (in YCrCb color space) of input frames, thus further reducing the influence of adversarial perturbation. Experimental results on a benchmark dataset demonstrate the effectiveness of our framework in recovering the classification performance on perturbed videos.

源语言英语
主期刊名Proceedings of the 2nd ACM International Conference on Multimedia in Asia, MMAsia 2020
出版商Association for Computing Machinery, Inc
ISBN(电子版)9781450383080
DOI
出版状态已出版 - 7 3月 2021
活动2nd ACM International Conference on Multimedia in Asia, MMAsia 2020 - Virtual, Online, 新加坡
期限: 7 3月 2021 → …

出版系列

姓名Proceedings of the 2nd ACM International Conference on Multimedia in Asia, MMAsia 2020

会议

会议2nd ACM International Conference on Multimedia in Asia, MMAsia 2020
国家/地区新加坡
Virtual, Online
时期7/03/21 → …

指纹

探究 'Defense for adversarial videos by self-adaptive JPEG compression and optical texture' 的科研主题。它们共同构成独一无二的指纹。

引用此