Cargando…

Adversarial training and deep k-nearest neighbors improves adversarial defense of glaucoma severity detection

Glaucoma is an eye disease that can cause irreversible blindness to people if not treated properly. Although deep learning models have shown that they can provide good results in identifying diseases from medical imagery, they suffer from the vulnerability of adversarial attacks, making them perform...

Descripción completa

Detalles Bibliográficos
Autores principales: Riza Rizky, Lalu M., Suyanto, Suyanto
Formato: Online Artículo Texto
Lenguaje:English
Publicado: Elsevier 2022
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC9747606/
https://www.ncbi.nlm.nih.gov/pubmed/36531633
http://dx.doi.org/10.1016/j.heliyon.2022.e12275
_version_ 1784849639431733248
author Riza Rizky, Lalu M.
Suyanto, Suyanto
author_facet Riza Rizky, Lalu M.
Suyanto, Suyanto
author_sort Riza Rizky, Lalu M.
collection PubMed
description Glaucoma is an eye disease that can cause irreversible blindness to people if not treated properly. Although deep learning models have shown that they can provide good results in identifying diseases from medical imagery, they suffer from the vulnerability of adversarial attacks, making them perform poorly. Several techniques can be applied to improve defense against such attacks. One of which is adversarial training (AT) which trains a deep learning model using the input's gradient used to generate noises to the input image and Deep k-Nearest Neighbor (DkNN) that enforces prediction's conformity based on nearest neighbor voting on each layer's representation. This work tries to improve the defense against adversarial attacks by combining AT and DkNN. The evaluation performed on several adversarial attacks show that given an optimum k, the combination of these two methods is able to improve most models' overall classification result on the perturbed retinal fundus image.
format Online
Article
Text
id pubmed-9747606
institution National Center for Biotechnology Information
language English
publishDate 2022
publisher Elsevier
record_format MEDLINE/PubMed
spelling pubmed-97476062022-12-15 Adversarial training and deep k-nearest neighbors improves adversarial defense of glaucoma severity detection Riza Rizky, Lalu M. Suyanto, Suyanto Heliyon Research Article Glaucoma is an eye disease that can cause irreversible blindness to people if not treated properly. Although deep learning models have shown that they can provide good results in identifying diseases from medical imagery, they suffer from the vulnerability of adversarial attacks, making them perform poorly. Several techniques can be applied to improve defense against such attacks. One of which is adversarial training (AT) which trains a deep learning model using the input's gradient used to generate noises to the input image and Deep k-Nearest Neighbor (DkNN) that enforces prediction's conformity based on nearest neighbor voting on each layer's representation. This work tries to improve the defense against adversarial attacks by combining AT and DkNN. The evaluation performed on several adversarial attacks show that given an optimum k, the combination of these two methods is able to improve most models' overall classification result on the perturbed retinal fundus image. Elsevier 2022-12-06 /pmc/articles/PMC9747606/ /pubmed/36531633 http://dx.doi.org/10.1016/j.heliyon.2022.e12275 Text en © 2022 The Authors. Published by Elsevier Ltd. https://creativecommons.org/licenses/by-nc-nd/4.0/This is an open access article under the CC BY-NC-ND license (http://creativecommons.org/licenses/by-nc-nd/4.0/).
spellingShingle Research Article
Riza Rizky, Lalu M.
Suyanto, Suyanto
Adversarial training and deep k-nearest neighbors improves adversarial defense of glaucoma severity detection
title Adversarial training and deep k-nearest neighbors improves adversarial defense of glaucoma severity detection
title_full Adversarial training and deep k-nearest neighbors improves adversarial defense of glaucoma severity detection
title_fullStr Adversarial training and deep k-nearest neighbors improves adversarial defense of glaucoma severity detection
title_full_unstemmed Adversarial training and deep k-nearest neighbors improves adversarial defense of glaucoma severity detection
title_short Adversarial training and deep k-nearest neighbors improves adversarial defense of glaucoma severity detection
title_sort adversarial training and deep k-nearest neighbors improves adversarial defense of glaucoma severity detection
topic Research Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC9747606/
https://www.ncbi.nlm.nih.gov/pubmed/36531633
http://dx.doi.org/10.1016/j.heliyon.2022.e12275
work_keys_str_mv AT rizarizkylalum adversarialtraininganddeepknearestneighborsimprovesadversarialdefenseofglaucomaseveritydetection
AT suyantosuyanto adversarialtraininganddeepknearestneighborsimprovesadversarialdefenseofglaucomaseveritydetection