The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 19, 2024

Filed:

Apr. 13, 2022
Applicant:

Bicdroid Inc., Petersburg, CA;

Inventors:

En-hui Yang, Petersburg, CA;

Chen Sun, Nanjing, CN;

Assignee:

BicDroid Inc., Petersburg, CA;

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 21/64 (2013.01); G06F 21/60 (2013.01); G06T 1/00 (2006.01);
U.S. Cl.
CPC ...
G06F 21/64 (2013.01); G06T 1/005 (2013.01); G06T 1/0092 (2013.01); G06T 2201/0065 (2013.01);
Abstract

A system, method and computer program product for protecting a deep neural network image classifier against receiving perturbed images. A plurality of watermark bits are embedded into an original digital image intended for the deep neural network image classifier. The watermarked image is transmitted through a potentially adversarial environment. A potentially perturbed image intended for the deep neural network image classifier is received from the potentially adversarial environment. The potentially perturbed image is determined to be an adversely modified or benign image by determining whether the potentially perturbed image includes a plurality of embedded bits matching the plurality of watermark bits embedded into the original digital image. The potentially perturbed image is prevented from being provided to the deep neural network image classifier in response to determining that the potentially perturbed image is the adversely modified image.


Find Patent Forward Citations

Loading…