• Complex
  • Title
  • Keyword
  • Abstract
  • Scholars
  • Journal
  • ISSN
  • Conference
成果搜索

author:

Fan, Mingyuan (Fan, Mingyuan.) [1] | Liu, Yang (Liu, Yang.) [2] | Chen, Cen (Chen, Cen.) [3] | Yu, Shengxing (Yu, Shengxing.) [4] | Guo, Wenzhong (Guo, Wenzhong.) [5] (Scholars:郭文忠) | Wang, Li (Wang, Li.) [6] | Liu, Ximeng (Liu, Ximeng.) [7] (Scholars:刘西蒙)

Indexed by:

EI Scopus SCIE

Abstract:

Nowadays, the impressive performance of deep neural networks (DNNs) greatly advances the development of Internet of Things (IoT) in diverse scenarios. However, the exceptional vulnerability of DNNs to adversarial attack leads IoT devices to be exposed to potential security issues. Up to now, since adversarial training empirically remains robust against gradient-based adversarial attacks, it is believed to be the most effective defense method. In this article, we find that adversarial examples generated by gradient-based adversarial attacks tend to be less imperceptible induced by the gradient-based optimization methods (adopted in the attacks) being difficult on searching the most effective adversarial examples (i.e., the global extreme points), which may lead to an inaccurate estimation for the effectiveness of the adversarial training. To overcome the inherent defect of gradient-based adversarial attacks, we propose a novel adversarial attack named nongradient attack (NGA), of which search strategy is effective but no longer depends on gradients to enhance the threat of adversarial examples. In detail, NGA first initializes the adversarial examples outside, rather than inside, of decision boundary to make them misclassified by the model and then, under without violation of misclassified condition, adjusts the adversarial examples toward the crafted direction to close the original examples. Extensive experiments show that NGA significantly outperforms the state-of-the-art adversarial attacks on attack success rate (ASR) by 2%-7%. Moreover, we propose a new evaluation metric, i.e., composite criterion (CC) based on both ASR and accuracy, to better measure the effectiveness of adversarial training. In the experiments, CC has shown to be a more comprehensive yet appropriate evaluation metric.

Keyword:

Adversarial attack adversarial examples adversarial robustness evaluation metric Internet of Things (IoT) nongradient attack (NGA)

Community:

  • [ 1 ] [Fan, Mingyuan]Fuzhou Univ, Coll Comp & Data Sci, Fuzhou 350108, Peoples R China
  • [ 2 ] [Liu, Ximeng]Fuzhou Univ, Coll Comp & Data Sci, Fuzhou 350108, Peoples R China
  • [ 3 ] [Fan, Mingyuan]Xidian Univ, State Key Lab Integrated Serv Networks, Xian 710071, Peoples R China
  • [ 4 ] [Liu, Ximeng]Xidian Univ, State Key Lab Integrated Serv Networks, Xian 710071, Peoples R China
  • [ 5 ] [Liu, Yang]Xidian Univ, Sch Cyber Engn, Xian 710071, Peoples R China
  • [ 6 ] [Chen, Cen]East China Normal Univ, Sch Data Sci & Engn, Shanghai 310000, Peoples R China
  • [ 7 ] [Yu, Shengxing]Peking Univ, Sch Elect Engn & Comp Sci, Beijing 110000, Peoples R China
  • [ 8 ] [Guo, Wenzhong]Fuzhou Univ, Coll Comp & Data Sci, Fuzhou 350108, Peoples R China
  • [ 9 ] [Liu, Ximeng]Fuzhou Univ, Coll Comp & Data Sci, Fuzhou 350108, Peoples R China
  • [ 10 ] [Guo, Wenzhong]Ant Grp, Smart Engine & Data Mid Platform Tech Business Un, Hangzhou 330100, Peoples R China
  • [ 11 ] [Wang, Li]Ant Grp, Smart Engine & Data Mid Platform Tech Business Un, Hangzhou 330100, Peoples R China
  • [ 12 ] [Liu, Ximeng]Ant Grp, Smart Engine & Data Mid Platform Tech Business Un, Hangzhou 330100, Peoples R China

Reprint 's Address:

Show more details

Related Keywords:

Related Article:

Source :

IEEE INTERNET OF THINGS JOURNAL

ISSN: 2327-4662

Year: 2022

Issue: 18

Volume: 9

Page: 17002-17013

1 0 . 6

JCR@2022

8 . 2 0 0

JCR@2023

ESI Discipline: COMPUTER SCIENCE;

ESI HC Threshold:61

JCR Journal Grade:1

CAS Journal Grade:1

Cited Count:

WoS CC Cited Count:

SCOPUS Cited Count:

ESI Highly Cited Papers on the List: 0 Unfold All

WanFang Cited Count:

Chinese Cited Count:

30 Days PV: 0

Online/Total:947/13852151
Address:FZU Library(No.2 Xuyuan Road, Fuzhou, Fujian, PRC Post Code:350116) Contact Us:0591-22865326
Copyright:FZU Library Technical Support:Beijing Aegean Software Co., Ltd. 闽ICP备05005463号-1