Analysis of the Impact of White Box Adversarial Attacks in ResNet While Classifying Retinal Fundus Images - IFIP - Lecture Notes in Computer Science Access content directly
Conference Papers Year : 2022

Analysis of the Impact of White Box Adversarial Attacks in ResNet While Classifying Retinal Fundus Images

D. P. Bharath Kumar
  • Function : Author
  • PersonId : 1332824
Nanda Kumar
  • Function : Author
  • PersonId : 1332825
Snofy D. Dunston
  • Function : Author
  • PersonId : 1332826
V. Rajam
  • Function : Author
  • PersonId : 1332827

Abstract

Medical image analysis with deep learning techniques has been widely recognized to provide support in medical diagnosis. Among the several attacks on the deep learning (DL) models that aim to decrease the reliability of the models, this paper deals with the adversarial attacks. Adversarial attacks and the ways to defend the attacks or make the DL models robust towards these attacks have been an increasingly important research topic with a surge of work carried out on both sides. The adversarial attacks of the white box category, namely Fast Gradient Sign Method (FGSM), the Box-constrained Limited Memory Broyden-Fletcher-Goldfarb-Shanno (L-BFGS-B) attack and a variant of the L-BFGS-B attack are studied in this paper. In this work, we have used two defense mechanisms, namely, Adversarial Training and Defensive distillation-Gradient masking. The reliability of these defense mechanisms against the attacks are studied. The effect of noise in FGSM is studied in detail. Retinal fundus images for the diabetic retinopathy disease are used in the experimentation. The effect of the attack reveals the vulnerability of the Resnet model for these attacks.
Embargoed file
Embargoed file
0 7 24
Year Month Jours
Avant la publication
Wednesday, January 1, 2025
Embargoed file
Wednesday, January 1, 2025
Please log in to request access to the document

Dates and versions

hal-04381279 , version 1 (09-01-2024)

Licence

Attribution

Identifiers

Cite

D. P. Bharath Kumar, Nanda Kumar, Snofy D. Dunston, V. Rajam. Analysis of the Impact of White Box Adversarial Attacks in ResNet While Classifying Retinal Fundus Images. 5th International Conference on Computational Intelligence in Data Science (ICCIDS), Mar 2022, Virtual, India. pp.162-175, ⟨10.1007/978-3-031-16364-7_13⟩. ⟨hal-04381279⟩
9 View
0 Download

Altmetric

Share

Gmail Facebook X LinkedIn More