article وصول مفتوح

Restricted‐Area Adversarial Example Attack for Image Captioning Model

  • Wireless Communications and Mobile Computing
  • Wiley
Research footprint

At a glance

الاستشهادات
5
المراجع
46
Comments
0
Paper overview

Abstract

Deep neural networks provide good performance in the fields of image recognition, speech recognition, and text recognition. For example, recurrent neural networks are used by image captioning models to generate text after an image recognition step, thereby providing captions for the images. The image captioning model first extracts features from the image and generates a representation vector; it then generates the text for the image captions by using the recursive neural network. This model has a weakness, however: it is vulnerable to adversarial examples. In this paper, we propose a method for generating restricted adversarial examples that target image captioning models. By adding a minimal amount of noise just to a specific area of an original sample image, the proposed method creates an adversarial example that remains correctly recognizable to humans yet is misinterpreted by the target model. We evaluated the method’s performance through experiments with the MS COCO dataset and using TensorFlow as the machine learning library. The results show that the proposed method generates a restricted adversarial example that is misinterpreted by the target model while minimizing its distortion from the original sample.

Record transparency

Publication details

DOI
10.1155/2022/9962972
OpenAlex
W4284886555
Document type
article
Language
EN
Source
Wireless Communications and Mobile Computing
Last metadata update
المجتمع

Comments

تسجيل الدخول للانضمام إلى النقاش.

  1. لا توجد تعليقات بعد. ابدأ النقاش.