Training-Free Adversarial Robustness in Computational MRI
Mahdi Saberi, Chi Zhang, Mehmet Akcakaya
摘要
Deep learning (DL) methods have become the state-of-the-art for reconstructing sub-sampled magnetic resonance imaging (MRI) data. However, studies have shown that these methods are susceptible to small adversarial input perturbations, resulting in major distortions in the output images. Various strategies have been proposed to reduce the effects of these attacks, but they require retraining. In this work, we propose a novel approach for mitigating adversarial attacks on MRI reconstruction models without any retraining. Based on the idea of cyclic measurement consistency, we devise a novel mitigation objective that is minimized in a small ball around the attack input. Results show that our method substantially reduces the impact of adversarial perturbations across different datasets, attack types/strengths and PD-DL networks, and qualitatively and quantitatively outperforms conventional mitigation methods. We also introduce a practically relevant scenario for small adversarial perturbations that models impulse noise in raw data, which relates to herringbone artifacts, and show the applicability of our approach in this setting. Finally, we show our mitigation approach remains effective in two realistic extension scenarios: a blind setup, where the attack strength or algorithm is not known to the user; and an adaptive attack setup, where the attacker has full knowledge of the defense strategy. Code available at: https://github.com/MahdiSaberii/CycMit-MRI
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
它引用的顶会 Paper15
- On Adaptive Attacks to Adversarial Example DefensesFlorian Tramèr, Nicholas Carlini, Wieland Brendel, Aleksander MadryNeurIPS 2020 · 被引用 1,026 次
- Diffusion Models for Adversarial PurificationWeili Nie, Brandon Guo, Yujia Huang, Chaowei Xiao 等ICML 2022 · 被引用 663 次
- Denoised Smoothing: A Provable Defense for Pretrained ClassifiersHadi Salman, Mingjie Sun, Greg Yang, Ashish Kapoor 等NeurIPS 2020 · 被引用 191 次
- Diffusion Posterior Sampling for General Noisy Inverse ProblemsHyungjin Chung, Jeongsol Kim, Michael Thompson McCann, Marc Louis Klasky 等ICLR 2023 · 被引用 152 次
- Zero-Shot Self-Supervised Learning for MRI ReconstructionBurhaneddin Yaman, Seyed Amir Hossein Hosseini, Mehmet AkçakayaICLR 2022 · 被引用 109 次
相关 Paper
- Measuring Robustness in Deep Learning Based Compressive SensingMohammad Zalbagi Darestani, Akshay S. Chaudhari, Reinhard HeckelICML 2021 · 被引用 94 次
- MRI Banding Removal via Adversarial TrainingAaron Defazio, Tullie Murrell, Michael P. RechtNeurIPS 2020 · 被引用 17 次
- Improving Robustness of Deep-Learning-Based Image ReconstructionAnkit Raj, Yoram Bresler, Bo LiICML 2020 · 被引用 58 次
- ResoNet: Noise-Trained Physics-Informed MRI Off-Resonance CorrectionAlfredo De Goyeneche Macaya, Shreya Ramachandran, Ke Wang, Ekin Karasan 等NeurIPS 2023 · 被引用 4 次
- A Unified Model for Compressed Sensing MRI Across Undersampling PatternsArmeet Singh Jatyani, Jiayun Wang, Aditi Chandrashekar, Zihui Wu 等CVPR 2025
