Title
Backpack: A Backpropagable Adversarial Embedding Scheme
Abstract
A minmax protocol offers a general method to automatically optimize steganographic algorithm against a wide class of steganalytic detectors. The quality of the resulting steganograhic algorithm depends on the ability to find an "adversarial" stego image undetectable by a set of detectors while communicating a given message. Despite minmax protocol instantiated with ADV-EMB scheme leading to unexpectedly good results, we show it suffers a significant flaw and we present a theoretically sound solution called Backpack. Extensive experimental verification of minmax protocol with Backpack shows superior performance to ADV-EMB, the generality of the tool by targeting a new JPEG QF100 compatibility attack and further improves the security of steganographic algorithms.
Year
DOI
Venue
2022
10.1109/TIFS.2022.3204218
IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY
Keywords
DocType
Volume
Protocols, Detectors, Games, Costs, Steganography, Security, Distortion, Steganography, steganalysis, distortion function, adversarial attacks
Journal
17
ISSN
Citations 
PageRank 
1556-6013
0
0.34
References 
Authors
0
4
Name
Order
Citations
PageRank
Solene Bernard100.34
Patrick Bas212116.17
John Klein37710.14
Tomás Pevný4335.65