首页> 外国专利> Single-pixel attack sample generation method, device, equipment and storage medium

Single-pixel attack sample generation method, device, equipment and storage medium

机译:单像素攻击样本的生成方法,装置,设备及存储介质

摘要

PROBLEM TO BE SOLVED: To provide a method for generating a 1-pixel attack sample, which has a short operation time and which greatly reduces the probability that a neural network accurately recognizes a numerical image by changing only one pixel point of the numerical sample image. SOLUTION: A recognition target image X is acquired, each pixel point of the recognition target image X is traversed, K pixel values are sampled for each pixel point, and recognition is performed in a preset neural network N of each numerical value. The probability is calculated, the position P of the pixel point when the recognition probability is the lowest is acquired, each pixel value at the position P of the pixel point is traversed, and the recognition probability in the preset neural network N of each numerical value is calculated. Then, the pixel value V′ when the recognition probability is the lowest is acquired, the pixel value of the pixel position P in the recognition target image X is changed to V′, and the adversarial sample X′ is acquired. [Selection diagram] Figure 1
机译:解决的问题:提供一种生成1像素攻击样本的方法,该方法操作时间短,并且通过仅改变数值样本图像的一个像素点,大大降低了神经网络准确识别数值图像的可能性。 。解决方案:采集识别目标图像X,遍历识别目标图像X的每个像素点,为每个像素点采样K个像素值,并在每个数值的预设神经网络N中执行识别。计算该概率,获取识别概率最低的像素点的位置P,遍历该像素点的位置P处的每个像素值,并在每个数值的预设神经网络N中识别概率计算。然后,获取识别概率最低时的像素值V',将识别对象图像X中的像素位置P的像素值改变为V',并获取对抗样本X'。 [选择图]图1

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号