Current browse context:
cs.CR
Change to browse by:
References & Citations
Computer Science > Cryptography and Security
Title: Targeted Attack for Deep Hashing based Retrieval
(Submitted on 15 Apr 2020 (v1), last revised 23 Jul 2020 (this version, v3))
Abstract: The deep hashing based retrieval method is widely adopted in large-scale image and video retrieval. However, there is little investigation on its security. In this paper, we propose a novel method, dubbed deep hashing targeted attack (DHTA), to study the targeted attack on such retrieval. Specifically, we first formulate the targeted attack as a point-to-set optimization, which minimizes the average distance between the hash code of an adversarial example and those of a set of objects with the target label. Then we design a novel component-voting scheme to obtain an anchor code as the representative of the set of hash codes of objects with the target label, whose optimality guarantee is also theoretically derived. To balance the performance and perceptibility, we propose to minimize the Hamming distance between the hash code of the adversarial example and the anchor code under the $\ell^\infty$ restriction on the perturbation. Extensive experiments verify that DHTA is effective in attacking both deep hashing based image retrieval and video retrieval.
Submission history
From: Jiawang Bai [view email][v1] Wed, 15 Apr 2020 08:36:58 GMT (4315kb,D)
[v2] Fri, 8 May 2020 01:25:12 GMT (4315kb,D)
[v3] Thu, 23 Jul 2020 08:24:04 GMT (4315kb,D)
Link back to: arXiv, form interface, contact.