Threat of Adversarial Attacks on Deep Learning in Computer Vision: A Survey
Top Cited Papers
Open Access
- 19 February 2018
- journal article
- research article
- Published by Institute of Electrical and Electronics Engineers (IEEE) in IEEE Access
- Vol. 6, 14410-14430
- https://doi.org/10.1109/access.2018.2807385
Abstract
Deep learning is at the heart of the current rise of artificial intelligence. In the field of computer vision, it has become the workhorse for applications ranging from self-driving cars to surveillance and security. Whereas, deep neural networks have demonstrated phenomenal success (often beyond human capabilities) in solving complex problems, recent studies show that they are vulnerable to adversarial attacks in the form of subtle perturbations to inputs that lead a model to predict incorrect outputs. For images, such perturbations are often too small to be perceptible, yet they completely fool the deep learning models. Adversarial attacks pose a serious threat to the success of deep learning in practice. This fact has recently led to a large influx of contributions in this direction. This paper presents the first comprehensive survey on adversarial attacks on deep learning in computer vision. We review the works that design adversarial attacks, analyze the existence of such attacks and propose defenses against them. To emphasize that adversarial attacks are possible in practical conditions, we separately review the contributions that evaluate adversarial attacks in the real-world scenarios. Finally, drawing on the reviewed literature, we provide a broader outlook of this research direction.Keywords
Other Versions
Funding Information
- ARC (DP 160101458)
This publication has 61 references indexed in Scilit:
- Deep learning applications and challenges in big data analyticsJournal of Big Data, 2015
- Deep Neural Nets as a Method for Quantitative Structure–Activity RelationshipsJournal of Chemical Information and Modeling, 2015
- The human splicing code reveals new insights into the genetic determinants of diseaseScience, 2015
- Connectomic reconstruction of the inner plexiform layer in the mouse retinaNature, 2013
- Online particle detection with Neural Networks based on topological calorimetry informationJournal of Physics: Conference Series, 2012
- Learning Deep Architectures for AIFoundations and Trends® in Machine Learning, 2009
- An Introduction to FramesFoundations and Trends® in Signal Processing, 2007
- Long Short-Term MemoryNeural Computation, 1997
- Improving generalization performance using double backpropagationIEEE Transactions on Neural Networks, 1992
- Learning representations by back-propagating errorsNature, 1986