首页>
外国专利>
Single-pixel attack sample generation method, device, equipment and storage medium
Single-pixel attack sample generation method, device, equipment and storage medium
展开▼
机译:单像素攻击样本的生成方法,装置,设备及存储介质
展开▼
页面导航
摘要
著录项
相似文献
摘要
PROBLEM TO BE SOLVED: To provide a method for generating a 1-pixel attack sample, which has a short operation time and which greatly reduces the probability that a neural network accurately recognizes a numerical image by changing only one pixel point of the numerical sample image. SOLUTION: A recognition target image X is acquired, each pixel point of the recognition target image X is traversed, K pixel values are sampled for each pixel point, and recognition is performed in a preset neural network N of each numerical value. The probability is calculated, the position P of the pixel point when the recognition probability is the lowest is acquired, each pixel value at the position P of the pixel point is traversed, and the recognition probability in the preset neural network N of each numerical value is calculated. Then, the pixel value V′ when the recognition probability is the lowest is acquired, the pixel value of the pixel position P in the recognition target image X is changed to V′, and the adversarial sample X′ is acquired. [Selection diagram] Figure 1
展开▼