DOAJ Open Access 2025

Unveiling the veil: high-frequency components as the key to understanding medical DNNs’ vulnerability to adversarial examples

Yaguan Qian Renhui Tao Huabin Du Bin Wang

Abstrak

Abstract Deep Neural Networks (DNNs) have demonstrated outstanding performance in various medical image processing tasks. However, recent studies have revealed a heightened vulnerability of medical DNNs to adversarial attacks compared to their natural counterparts. In this work, we present a novel perspective by analyzing the disparities between medical datasets and natural datasets, specifically focusing on the dataset collection process. Our analysis uncovers unique differences in the data distribution across different image classes in medical datasets, a phenomenon absent in natural datasets. To gain deeper insights into medical datasets, we employ Fourier analysis tools to investigate medical DNNs. Intriguingly, we discover that high-frequency components in medical images exhibit stronger associations with corresponding labels compared to those in natural datasets. These high-frequency components distract the attention of medical DNNs, rendering them more susceptible to adversarial images. To mitigate this vulnerability, we propose a preprocessing technique called Removing High-frequency Components (RH) training. Our experimental results demonstrate that the application of RH training significantly enhances the robustness of medical DNNs against adversarial attacks. Notably, in certain scenarios, RH training even outperforms traditional adversarial training methods, particularly when subjected to black-box attacks.

Penulis (4)

Y

Yaguan Qian

R

Renhui Tao

H

Huabin Du

B

Bin Wang

Format Sitasi

Qian, Y., Tao, R., Du, H., Wang, B. (2025). Unveiling the veil: high-frequency components as the key to understanding medical DNNs’ vulnerability to adversarial examples. https://doi.org/10.1186/s42400-024-00330-9

Akses Cepat

PDF tidak tersedia langsung

Cek di sumber asli →
Lihat di Sumber doi.org/10.1186/s42400-024-00330-9
Informasi Jurnal
Tahun Terbit
2025
Sumber Database
DOAJ
DOI
10.1186/s42400-024-00330-9
Akses
Open Access ✓