Szczegóły publikacji

Opis bibliograficzny

Robust detection of directional adversarial attacks in Deep Neural Networks for radiological imaging / Tristan MALATYŃSKI, Joanna JAWOREK-KORJAKOWSKA // W: CVPR 2026 [Dokument elektroniczny] : IEEE/CVF Computer Vision and Pattern Recognition : 3-7 June 2026, Denver, [USA] : proceedings. — Wersja do Windows. — Dane tekstowe. — [Denver] : Computer Vision Foundation, [2026]. — S. 4240–4249. — Wymagania systemowe: Adobe Reader. — Bibliogr. s. 4248–4249, Abstr.

Autorzy (2)

Dane bibliometryczne

ID BaDAP168458
Data dodania do BaDAP2026-07-20
Tekst źródłowyURL
Rok publikacji2026
Typ publikacjimateriały konferencyjne (aut.)
Otwarty dostęptak
Creative Commons
KonferencjaIEEE Conference on Computer Vision and Pattern Recognition 2026

Abstract

Deep learning is now central to radiology, helping detect changes on X-rays, CTs, and MRIs. However, these systems are highly vulnerable to adversarial attacks - small, crafted perturbations that mislead models while appearing unchanged to humans. Such errors risk missed cancers or false positives. Studies show over 90% attack success on medical scans. Almost 30% of US hospitals use AI in imaging in 2023. Thus, an effective method of detecting such attacks and their directionality is crucial to ensure the credibility and reliability of medical systems based on DNNs. We propose a novel detection framework that leverages subsequent attacks using random noise to identify adversarial perturbations. Our approach uses the analysis of variations in the Sigmoid function to distinguish genuine medical images from adversarially manipulated ones. Specifically, we compare prediction differences between clean and attacked images, as well as between different adversarially altered versions, to improve detection accuracy. We evaluated our method on three popular medical datasets including 'Chest X-Ray Images for Classification', 'Retinal Fundus Multi-disease Image Dataset' and 'Brain Tumor Dataset' under various attack scenarios, including random noise. Our framework achieved up to 99.8% ACC in identifying adversarial directional attacks, significantly outperforming existing defense mechanisms. It consistently identified adversarial samples across varying attack strengths while keeping false positives low, showing strong reliability and potential for clinical use. Furthermore, our proposal highlights its potential for real-world deployment.

Publikacje, które mogą Cię zainteresować

fragment książki
#168195Data dodania: 9.7.2026
Sign language recognition with Visual State Space Model / Bogdan KWOLEK // W: CVPR 2026 [Dokument elektroniczny] : IEEE/CVF Computer Vision and Pattern Recognition : 3-7 June 2026, Denver, [USA] : proceedings. — Wersja do Windows. — Dane tekstowe. — [Denver] : Computer Vision Foundation, [2026]. — S. 10520–10527. — Wymagania systemowe: Adobe Reader. — Bibliogr. s. 10526–10527, Abstr.
fragment książki
#167844Data dodania: 16.6.2026
Impact of black-box adversarial attacks on deep neural networks for skin imaging / Bartłomiej MONIAK, Joanna JAWOREK-KORJAKOWSKA // W: ICCV-W 2025 [Dokument elektroniczny] : 2025 IEEE/CVF International Conference on Computer Vision Workshops : 19–20 October 2025, Honolulu, United States : proceedings. — Wersja do Windows. — Dane tekstowe. — Piscataway : IEEE, cop. 2025. — ( IEEE International Conference on Computer Vision Workshops ; ISSN  2473-9936 ). — Print on Demand (PoD) ISBN: 979-8-3315-8989-9. — e-ISBN: 979-8-3315-8988-2. — S. 1145–1153. — Wymagania systemowe: Adobe Reader. — Bibliogr. s. 1153, Abstr. — Publikacja dostępna online od: 2025-02-23