A study of the effect of JPG compression on adversarial images

نویسندگان

  • Gintare Karolina Dziugaite
  • Zoubin Ghahramani
  • Daniel M. Roy
چکیده

Neural network image classifiers are known to be vulnerable to adversarial images, i.e., natural images which have been modified by an adversarial perturbation specifically designed to be imperceptible to humans yet fool the classifier. Not only can adversarial images be generated easily, but these images will often be adversarial for networks trained on disjoint subsets of data or with different architectures. Adversarial images represent a potential security risk as well as a serious machine learning challenge—it is clear that vulnerable neural networks perceive images very differently from humans. Noting that virtually every image classification data set is composed of JPG images, we evaluate the effect of JPG compression on the classification of adversarial images. For Fast-Gradient-Sign perturbations of small magnitude, we found that JPG compression often reverses the drop in classification accuracy to a large extent, but not always. As the magnitude of the perturbations increases, JPG recompression alone is insufficient to reverse the effect.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Automatic Colorization of Grayscale Images Using Generative Adversarial Networks

Automatic colorization of gray scale images poses a unique challenge in Information Retrieval. The goal of this field is to colorize images which have lost some color channels (such as the RGB channels or the AB channels in the LAB color space) while only having the brightness channel available, which is usually the case in a vast array of old photos and portraits. Having the ability to coloriz...

متن کامل

Improvement of generative adversarial networks for automatic text-to-image generation

This research is related to the use of deep learning tools and image processing technology in the automatic generation of images from text. Previous researches have used one sentence to produce images. In this research, a memory-based hierarchical model is presented that uses three different descriptions that are presented in the form of sentences to produce and improve the image. The proposed ...

متن کامل

Effect of image compression on telepathology. A randomized clinical trial.

CONTEXT For practitioners deploying store-and-forward telepathology systems, optimization methods such as image compression need to be studied. OBJECTIVE To determine if Joint Photographic Expert Group (JPG or JPEG) compression, a glossy image compression algorithm, negatively affects the accuracy of diagnosis in telepathology. DESIGN Double-blind, randomized, controlled trial. SETTING Un...

متن کامل

Impact of optic media opacities and image compression on quantitative analysis of optical coherence tomography.

PURPOSE To analyze the impact of opacities in the optical pathway and image compression of 32-bit raw data to 8-bit jpg images on quantified optical coherence tomography (OCT) image analysis. METHODS In 18 eyes of nine healthy subjects, OCT images were acquired from the central macula. To simulate opacities in the optical system, neutral-density (ND) filters with linear absorption spectra wer...

متن کامل

Evaluating the Impact of Iris Image Compression on Segmentation and Recognition Accuracy

A comprehensive study of the effects of lossy image compression on iris biometrics is presented. The compression standards Jpeg (JPG), Jpeg-2000 (J2K) and Jpeg-XR (JXR) are applied in numerous specified scenarios utilizing different segmentation and feature extraction algorithms in order to investigate impacts on recognition accuracy. Augmenting existing evaluations, this work examines not only...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:
  • CoRR

دوره abs/1608.00853  شماره 

صفحات  -

تاریخ انتشار 2016