CNNs(Convolutional Neural Networks) have a good performance on most classification tasks,but they are vulnerable when meeting adversarial *** and design of highly aggressive adversarial examples can help enhance the s...
CNNs(Convolutional Neural Networks) have a good performance on most classification tasks,but they are vulnerable when meeting adversarial *** and design of highly aggressive adversarial examples can help enhance the security and robustness of *** transferability of adversarial examples is still low in black-box ***,an adversarial example method based on probability histogram equalization,namely HE-MI-FGSM(Histogram Equalization Momentum Iterative Fast Gradient Sign Method) is *** each iteration of the adversarial example generation process,the original input image is randomly histogram equalized,and then the gradient is calculated to generate adversarial perturbations to mitigate overfitting in the adversarial *** effectiveness of the method is verified on the ImageNet *** with the advanced method I-FGSM(Iterative Fast Gradient Sign Method) and MI-FGSM(Momentum I-FGSM),the attack success rate in the adversarial training network increased by 27.9% and 7.7% on average,respectively.
Adding subtle perturbations to an image can cause the classification model to misclassify, and such images are called adversarial examples. Adversarial examples threaten the safe use of deep neural networks, but when ...
Adding subtle perturbations to an image can cause the classification model to misclassify, and such images are called adversarial examples. Adversarial examples threaten the safe use of deep neural networks, but when combined with reversible data hiding(RDH) technology, they can protect images from being correctly identified by unauthorized models and recover the image lossless under authorized models. Based on this, the reversible adversarial example(RAE) is rising. However, existing RAE technology focuses on feasibility, attack success rate and image quality, but ignores transferability and time complexity. In this paper,we optimize the data hiding structure and combine data augmentation technology,which flips the input image in probability to avoid overfitting phenomenon on the dataset. On the premise of maintaining a high success rate of white-box attacks and the image's visual quality, the proposed method improves the transferability of reversible adversarial examples by approximately 16% and reduces the computational cost by approximately 43% compared to the state-of-the-art method. In addition, the appropriate flip probability can be selected for different application scenarios.
A compact Sub-6GHz multiple-input-multiple-output (MIMO) antenna is presented in this paper. The recommended MIMO antenna is electrically small (38mm × 38 mm× 1.6 mm). For good isolation and miniaturized siz...
详细信息
This paper introduces a compact wideband 6 port multiple-input multiple-output (MIMO) antenna for the 5G handset. Each antenna elements uses coupling feed, and I-shaped grounding structure is added to the unit to obta...
详细信息
In order to achieve more efficient and accurate DDoS detection while ensuring data privacy, this paper proposes a DDoS detection method based on FLAD. Firstly, this paper uses the FLAD algorithm to train a global DDoS...
详细信息
A U-shaped-like parasitic strip loading antenna is proposed and designed, which can work in L1 band of GPS with circular polarization (CP) characteristics. The antenna consists of ground plane, dielectric, radiation p...
详细信息
A microstrip circular polarization (CP) patch antenna with a combination of unequal slots and arc-shaped protruding patches is proposed and designed, which can work for L2 band of GPS. The antenna is composed of groun...
详细信息
This study presents a fully digital CIM macro featuring a novel self-write-back 12T cell. This bitcell is capable of performing Boolean logic operations and autonomously writing back results into the in-situ cell, cir...
详细信息
A four-arm Archimedean spiral multi-mode OAM (Orbital Angular Momentum) antenna with bandwidth of 1.34GHz-9.53GHz is presented and analyzed. The bandwidth of traditional OAM antenna is dramatically improved by utilizi...
详细信息
Accurately predicting drug-target interactions (DTI) is a critical step in drug discovery. Existing methods of DTI prediction primarily employ Simplified Molecular-Input Line-Entry System (SMILES) sequences or molecul...
详细信息
暂无评论