A smart adversarial attack on deep hashing based image retrieval

Junda Lu, Mingyang Chen, Yifang Sun, Wei Wang, Yi Wang, Xiaochun Yang

Research output: Chapter in Book / Conference PaperConference Paperpeer-review

23 Citations (Scopus)
1 Downloads (Pure)

Abstract

Deep hashing based retrieval models have been widely used in large-scale image retrieval systems. Recently, there has been a surging interest in studying the adversarial attack problem in deep hashing based retrieval models. However, the effectiveness of existing adversarial attacks is limited by their poor perturbation management, unawareness of ranking weight, and only laser-focusing on the attack image. These shortages lead to high perturbation costs yet low AP reductions. To overcome these shortages, we propose a novel adversarial attack framework to improve the effectiveness of adversarial attacks. Our attack designs a dimension-wise surrogate Hamming distance function to help with wiser perturbation management. Further, in generating adversarial examples, instead of focusing on a single image, we propose to collectively incorporate relevant images combined with an AP-oriented (average precision) weight function. In addition, our attack can deal with both untargeted and targeted adversarial attacks in a flexible manner. Extensive experiments demonstrate that, with the same attack performance, our model significantly outperforms state-of-the-art models in perturbation cost on both untargeted and targeted attack tasks.
Original languageEnglish
Title of host publicationProceedings of the 2021 International Conference on Multimedia Retrieval (ICMR), August 21-24, 2021, Virtual
Place of PublicationU.S.
PublisherAssociation for Computing Machinery
Pages227–235
Number of pages9
ISBN (Print)9781450384636
DOIs
Publication statusPublished - 1 Sept 2021
Externally publishedYes
EventACM International Conference on Multimedia Retrieval - Virtual
Duration: 21 Aug 202124 Aug 2021
Conference number: 11th

Conference

ConferenceACM International Conference on Multimedia Retrieval
Abbreviated titleICMR
Period21/08/2124/08/21

Keywords

  • image retrieval
  • deep hashing
  • adversarial attack
  • Adversarial attack
  • Image retrieval
  • Deep hashing

Fingerprint

Dive into the research topics of 'A smart adversarial attack on deep hashing based image retrieval'. Together they form a unique fingerprint.

Cite this