Forensics Through Stega Glasses: the Case of Adversarial Images - INRIA - Institut National de Recherche en Informatique et en Automatique Accéder directement au contenu
Communication Dans Un Congrès Année : 2021

Forensics Through Stega Glasses: the Case of Adversarial Images

Résumé

This paper explores the connection between forensics, counterforensics, steganography and adversarial images. On the one hand, forensicsbased and steganalysis-based detectors help in detecting adversarial perturbations. On the other hand, steganography can be used as a counterforensics strategy and helps in forging adversarial perturbations that are not only invisible to the human eye but also less statistically detectable. This work explains how to use these information hiding tools for attacking or defending computer vision image classification. We play this cat and mouse game using both recent deep-learning content-based classifiers, forensics detectors derived from steganalysis, and steganographic distortions dedicated to color quantized images. It turns out that crafting adversarial perturbations relying on steganographic perturbations is an effective counter-forensics strategy.
Fichier principal
Vignette du fichier
paper.pdf (817.83 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)

Dates et versions

hal-03047954 , version 1 (09-12-2020)

Identifiants

  • HAL Id : hal-03047954 , version 1

Citer

Benoît Bonnet, Teddy Furon, Patrick Bas. Forensics Through Stega Glasses: the Case of Adversarial Images. ICPR-MMForWILD 2020 - Workshop MultiMedia FORensics in the WILD, Jan 2021, Milan, Italy. pp.1-17. ⟨hal-03047954⟩
119 Consultations
200 Téléchargements

Partager

Gmail Facebook X LinkedIn More