CNNs (Convolutional Neural Networks) have a good performance on most classification tasks, but they are vulnerable when meeting adversarial examples. Research and design of highly aggressive adversarial examples can h...
CNNs (Convolutional Neural Networks) have a good performance on most classification tasks, but they are vulnerable when meeting adversarial examples. Research and design of highly aggressive adversarial examples can help enhance the security and robustness of CNNs. The transferability of adversarial examples is still low in black-box settings. Therefore, an adversarial example method based on probability histogram equalization, namely HE-MI-FGSM (Histogram Equalization Momentum Iterative Fast Gradient Sign Method) is proposed. In each iteration of the adversarial example generation process, the original input image is randomly histogram equalized, and then the gradient is calculated to generate adversarial perturbations to mitigate overfitting in the adversarial example. The effectiveness of the method is verified on the ImageNet dataset. Compared with the advanced method I-FGSM (Iterative Fast Gradient Sign Method) and MI-FGSM (Momentum I-FGSM), the attack success rate in the adversarial training network increased by 27.9% and 7.7% on average, respectively.
This paper presents a hybrid method for determination of continuous dielectric properties of clothing materials. The dielectric constant and loss tangent of three types of materials are firstly investigated using open...
详细信息
Gathering reliable lab.led samples for polarimetric synthetic aperture (PolSAR) image classification is lab.rious. Moreover, applying a trained classifier to new domains often leads to noticeable performance degradati...
详细信息
In wireless communication systems, accurate channel estimation is essential to ensure the performance of wireless communication systems. Massive Multiple Input Multiple Output (M-MIMO) systems have a dramatic increase...
详细信息
In the Software Defined Network (SDN), the terminal has been connected to the network in the process when an access point failure or damage, if the access point is not properly selected, it will lead to a decline in t...
详细信息
This paper aims to investigate the ability of reconfigurable intelligent surfaces (RIS) damaged in multi-user environments to eliminate interference. Our research found that even if the RIS is damaged, interference ca...
详细信息
ISBN:
(数字)9798350384437
ISBN:
(纸本)9798350384444
This paper aims to investigate the ability of reconfigurable intelligent surfaces (RIS) damaged in multi-user environments to eliminate interference. Our research found that even if the RIS is damaged, interference can still be eliminated in the absence of a direct path and when the number of RIS is sufficient. In order to solve interference cancellation, we adopted the alternating projection algorithm, which ensures local convergence and good convergence speed.
A pattern reconfigurable dual-port multiple-input multiple-output (MIMO) antenna system utilizing Characteristic mode theory is proposed at 2.45GHz. By using the selective incentives of four characteristic modes, six ...
详细信息
Adding subtle perturbations to an image can cause the classification model to misclassify, and such images are called adversarial examples. Adversarial examples threaten the safe use of deep neural networks, but when ...
详细信息
A simple broadband slotted circularly-polarized (CP) antenna (SBS-CP) is presented, which mainly consists of a ground structure with a modified slot and an asymmetric feeding structure. The two structures can give dif...
详细信息
In this paper, a compact and high selectivity millimeter wave on-chip band-pass filter using GaAs pHEMT technology is proposed. A compact lumped element unit, which consists of a series LC resonator and an extra capac...
详细信息
暂无评论