{"title":"Enhancing resilience against adversarial attacks in medical imaging using advanced feature transformation training","authors":"Danish Vasan , Mohammad Hammoudeh","doi":"10.1016/j.cobme.2024.100561","DOIUrl":null,"url":null,"abstract":"<div><div>This study presents a machine learning-driven defense mechanism against adversarial attacks, specifically tailored for medical imaging applications. This mechanism utilizes feature transformation through transfer learning, leveraging a fine-tuned ResNet152V2 network trained on original medical images. To enhance the model's robustness, we apply efficient adversarial training on transformed features extracted from both original and adversarial images. Additionally, we integrate Principal Component Analysis (PCA) to reduce feature dimensionality, optimizing the adversarial training process. When evaluated on Chest X-ray datasets, focusing on pneumonia and normal cases, the proposed mechanism demonstrated strong resilience against imperceptible attacks while maintaining a performance retention rate above 90 %. These results show the potential of the proposed mechanism to enhance the reliability and security of CNN-based medical imaging systems in practical, real-world settings.</div></div>","PeriodicalId":36748,"journal":{"name":"Current Opinion in Biomedical Engineering","volume":"32 ","pages":"Article 100561"},"PeriodicalIF":4.2000,"publicationDate":"2024-10-22","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Current Opinion in Biomedical Engineering","FirstCategoryId":"5","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S2468451124000412","RegionNum":3,"RegionCategory":"工程技术","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q2","JCRName":"ENGINEERING, BIOMEDICAL","Score":null,"Total":0}
引用次数: 0
Abstract
This study presents a machine learning-driven defense mechanism against adversarial attacks, specifically tailored for medical imaging applications. This mechanism utilizes feature transformation through transfer learning, leveraging a fine-tuned ResNet152V2 network trained on original medical images. To enhance the model's robustness, we apply efficient adversarial training on transformed features extracted from both original and adversarial images. Additionally, we integrate Principal Component Analysis (PCA) to reduce feature dimensionality, optimizing the adversarial training process. When evaluated on Chest X-ray datasets, focusing on pneumonia and normal cases, the proposed mechanism demonstrated strong resilience against imperceptible attacks while maintaining a performance retention rate above 90 %. These results show the potential of the proposed mechanism to enhance the reliability and security of CNN-based medical imaging systems in practical, real-world settings.