Repository logo
Collections
Browse
Statistics
  • English
  • हिंदी
Log In
New user? Click here to register.Have you forgotten your password?
  1. Home
  2. Theses and Dissertations
  3. M Tech Dissertations
  4. Generating Targeted Adversarial Attacks and Assessing their Effectiveness in Fooling Deep Neural Networks

Generating Targeted Adversarial Attacks and Assessing their Effectiveness in Fooling Deep Neural Networks

Files

202011023.pdf (2.69 MB)

Date

2022

Authors

Gajjar, Shivangi Bharatbhai

Journal Title

Journal ISSN

Volume Title

Publisher

Dhirubhai Ambani Institute of Information and Communication Technology

Abstract

Deep neural network (DNN) models have gained popularity for most image classification problems. However, DNNs also have numerous vulnerable areas. These vulnerabilities can be exploited by an adversary to execute a successful adversarial attack, which is an algorithm to generate perturbed inputs that can fool a welltrained DNN. Among various existing adversarial attacks, DeepFool, a whitebox untargeted attack is considered as one of the most reliable algorithms to compute adversarial perturbations. However, in some scenarios such as person recognition, adversary might want to carry out a targeted attack such that the input gets misclassified in a specific target class. Moreover, studies show that defense against a targeted attack is tougher than an untargeted one. Hence, generating a targeted adversarial example is desirable from an attacker�s perspective. In this thesis, we propose �Targeted DeepFool�, which is based on computing a minimal amount of perturbation required to reach the target hyperplane. The proposed algorithm produces minimal amount of distortion for conventional image datasets: MNIST and CIFAR10. Further, Targeted DeepFool shows excellent performance in terms of adversarial success rate.

Description

Keywords

Deep Neural Network, algorithm, Targeted DeepFool

Citation

Gajjar, Shivangi Bharatbhai (2022). Generating Targeted Adversarial Attacks and Assessing their Effectiveness in Fooling Deep Neural Networks. Dhirubhai Ambani Institute of Information and Communication Technology. viii, 37 p. (Acc. # T01016).

URI

http://ir.daiict.ac.in/handle/123456789/1096

Collections

M Tech Dissertations

Endorsement

Review

Supplemented By

Referenced By

Full item page
 
Quick Links
  • Home
  • Search
  • Research Overview
  • About
Contact

DAU, Gandhinagar, India

library@dau.ac.in

+91 0796-8261-578

Follow Us

© 2025 Dhirubhai Ambani University
Designed by Library Team