Adversarial attacks and defenses on text-to-image diffusion models: A survey

IF 14.7 1区 计算机科学 Q1 COMPUTER SCIENCE, ARTIFICIAL INTELLIGENCE
Chenyu Zhang, Mingwang Hu, Wenhui Li, Lanjun Wang
{"title":"Adversarial attacks and defenses on text-to-image diffusion models: A survey","authors":"Chenyu Zhang,&nbsp;Mingwang Hu,&nbsp;Wenhui Li,&nbsp;Lanjun Wang","doi":"10.1016/j.inffus.2024.102701","DOIUrl":null,"url":null,"abstract":"<div><p>Recently, the text-to-image diffusion model has gained considerable attention from the community due to its exceptional image generation capability. A representative model, Stable Diffusion, amassed more than 10 million users within just two months of its release. This surge in popularity has facilitated studies on the robustness and safety of the model, leading to the proposal of various adversarial attack methods. Simultaneously, there has been a marked increase in research focused on defense methods to improve the robustness and safety of these models. In this survey, we provide a comprehensive review of the literature on adversarial attacks and defenses targeting text-to-image diffusion models. We begin with an overview of text-to-image diffusion models, followed by an introduction to a taxonomy of adversarial attacks and an in-depth review of existing attack methods. We then present a detailed analysis of current defense methods that improve model robustness and safety. Finally, we discuss ongoing challenges and explore promising future research directions. For a complete list of the adversarial attack and defense methods covered in this survey, please refer to our curated repository at <span><span>https://github.com/datar001/Awesome-AD-on-T2IDM</span><svg><path></path></svg></span>.</p></div><div><h3>Warning:</h3><p>This paper includes model-generated content that may contain offensive or distressing material.</p></div>","PeriodicalId":50367,"journal":{"name":"Information Fusion","volume":"114 ","pages":"Article 102701"},"PeriodicalIF":14.7000,"publicationDate":"2024-09-18","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Information Fusion","FirstCategoryId":"94","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S1566253524004792","RegionNum":1,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"COMPUTER SCIENCE, ARTIFICIAL INTELLIGENCE","Score":null,"Total":0}
引用次数: 0

Abstract

Recently, the text-to-image diffusion model has gained considerable attention from the community due to its exceptional image generation capability. A representative model, Stable Diffusion, amassed more than 10 million users within just two months of its release. This surge in popularity has facilitated studies on the robustness and safety of the model, leading to the proposal of various adversarial attack methods. Simultaneously, there has been a marked increase in research focused on defense methods to improve the robustness and safety of these models. In this survey, we provide a comprehensive review of the literature on adversarial attacks and defenses targeting text-to-image diffusion models. We begin with an overview of text-to-image diffusion models, followed by an introduction to a taxonomy of adversarial attacks and an in-depth review of existing attack methods. We then present a detailed analysis of current defense methods that improve model robustness and safety. Finally, we discuss ongoing challenges and explore promising future research directions. For a complete list of the adversarial attack and defense methods covered in this survey, please refer to our curated repository at https://github.com/datar001/Awesome-AD-on-T2IDM.

Warning:

This paper includes model-generated content that may contain offensive or distressing material.

文本到图像扩散模型的对抗性攻击和防御:调查
最近,文本到图像扩散模型因其卓越的图像生成能力而受到了社会各界的广泛关注。一个具有代表性的模型--"稳定扩散 "在发布后的短短两个月内就积累了 1000 多万用户。这种受欢迎程度的激增促进了对模型鲁棒性和安全性的研究,并提出了各种对抗性攻击方法。与此同时,为提高这些模型的鲁棒性和安全性,有关防御方法的研究也显著增加。在本研究中,我们将全面回顾针对文本到图像扩散模型的对抗性攻击和防御的文献。我们首先概述了文本到图像扩散模型,然后介绍了对抗性攻击的分类方法,并对现有的攻击方法进行了深入评述。然后,我们详细分析了当前可提高模型鲁棒性和安全性的防御方法。最后,我们讨论了当前面临的挑战,并探讨了前景广阔的未来研究方向。有关本调查所涉及的对抗性攻击和防御方法的完整列表,请参阅我们策划的资料库:https://github.com/datar001/Awesome-AD-on-T2IDM.Warning:This 论文包含模型生成的内容,可能含有攻击性或令人不安的材料。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
Information Fusion
Information Fusion 工程技术-计算机:理论方法
CiteScore
33.20
自引率
4.30%
发文量
161
审稿时长
7.9 months
期刊介绍: Information Fusion serves as a central platform for showcasing advancements in multi-sensor, multi-source, multi-process information fusion, fostering collaboration among diverse disciplines driving its progress. It is the leading outlet for sharing research and development in this field, focusing on architectures, algorithms, and applications. Papers dealing with fundamental theoretical analyses as well as those demonstrating their application to real-world problems will be welcome.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信