HyperAIHyperAI

Command Palette

Search for a command to run...

3 months ago

NOMARO: Defending against Adversarial Attacks by NOMA-Inspired Reconstruction Operation

{N. B. Puhan Soumya P. Dash Aryaman Sinha}

Abstract

In this work, a non-orthogonal multiple access (NOMA)-inspired defense method is proposed to mitigate the effect of adversarial attacks, which pose a major challenge towards deep neural networks (DNNs) in multimedia networks. The novel defense method, namely NOMA-inspired reconstruction operation (NOMARO), incorporates a copy of the input image generated by applying the untargeted adversarial attack. The copy and input images are superposed with a power allocation factor inversely proportional to the correlation between the considered images. To the best of our knowledge, this is the first communication theory based approach to design an adversarial defense method to be useful in multimedia applications. A comparative study with the existing defense techniques shows the superior performance of the proposed NOMARO defense against the state-of-the-art C&W and Square attacks in white-box and black-box settings, respectively, on popular DNN models.

Benchmarks

BenchmarkMethodologyMetrics
adversarial-defense-on-imagenetInceptionV3
Accuracy: 98.6%
adversarial-defense-on-imagenetResNet101
Accuracy: 99.8%

Build AI with AI

From idea to launch — accelerate your AI development with free AI co-coding, out-of-the-box environment and best price of GPUs.

AI Co-coding
Ready-to-use GPUs
Best Pricing
Get Started

Hyper Newsletters

Subscribe to our latest updates
We will deliver the latest updates of the week to your inbox at nine o'clock every Monday morning
Powered by MailChimp
NOMARO: Defending against Adversarial Attacks by NOMA-Inspired Reconstruction Operation | Papers | HyperAI