The invention relates to an image recognition
attack method based on
algorithm confrontational
attack. The method includes inputting the original image needing to be identified and attacked into the adversarial generation network to obtain a resistance image, carrying out
image identification and classification on the original image and the resistance image simultaneously, if the classification isthe same, indicating that the
attack is unsuccessful, collecting data and updating the adversarial generation network, otherwise, indicating that the attack is successful. According to the method, anexisting image
recognition algorithm can be attacked, the
algorithm cannot carry out normal image recognition by generating a resistance sample, and therefore functional application in the fields offace recognition,
image detection, automatic driving and the like is influenced, and the applicability is wide; once the training of the adversarial generation network is completed, the generated adversarial samples do not need to depend on the contact of a target model and a large number of numerical operations, and the characteristics of high efficiency and migration are achieved; research on the adversarial attack of
machine learning is beneficial to further optimization of a
machine learning
algorithm and a
data processing means, and the safety of the
machine learning algorithm and the application thereof is improved.