Search arXivSearch

arXiv · 2505.01884

Adversarial Robustness of Deep Learning Models for Inland Water Body Segmentation from SAR Images

Abstract

Inland water body segmentation from Synthetic Aperture Radar (SAR) images is an important task needed for several applications, such as flood mapping. While SAR sensors capture data in all-weather conditions as high-resolution images, differentiating water and water-like surfaces from SAR images is not straightforward. Inland water bodies, such as large river basins, have complex geometry, which adds to the challenge of segmentation. U-Net is a widely used deep learning model for land-water segmentation of SAR images. In practice, manual annotation is often used to generate the corresponding water masks as ground truth. Manual annotation of the images is prone to label noise owing to data poisoning attacks, especially due to complex geometry. In this work, we simulate manual errors in the form of adversarial attacks on the U-Net model and study the robustness of the model to human errors in annotation. Our results indicate that U-Net can tolerate a certain level of corruption before its performance drops significantly. This finding highlights the crucial role that the quality of manual annotations plays in determining the effectiveness of the segmentation model. The code and the new dataset, along with adversarial examples for robust training, are publicly available. (GitHub link - https://github.com/GVCL/IWSeg-SAR-Poison.git)

Explore related subjects

Keep this discovery

Explore connections, maps & timelines

BibTeXRIS

Siddharth Kothari, Srinivasan Murali, Sankalp Kothari, Ujjwal Verma, Jaya Sreevalsan-Nair. 2025-05-06. Adversarial Robustness of Deep Learning Models for Inland Water Body Segmentation from SAR Images. https://arxiv.org/abs/2505.01884

Cite the original work for its findings. Save a collection to share your selection of sources.

KEEP EXPLORING

Related papers

KELP: K-space-conditioned Estimation of Learned Sampling Patterns for Scan-Adaptive Multi-Coil MRI

Deep learning techniques have gained considerable attention for accelerating MRI acquisition while maintaining image quality. In this work, we present a convolutional neural network (CNN)-based framework for predicting scan-adaptive undersampling patterns directly from low-frequency multi-coil $k$-space data. Unlike approaches that optimize sampling patterns during training or rely on nearest-neighbor search at inference, our method is trained using precomputed scan-adaptive optimized masks as supervised labels and predicts a scan-specific sampling pattern in a single forward pass. The training procedure alternates between optimizing the sampling network and a reconstruction network, allowing the learned masks to adapt to reconstruction performance. Experiments on the fastMRI multi-coil knee dataset demonstrate competitive reconstruction quality compared with existing population- and scan-adaptive sampling approaches at $4\times$ and $8\times$ acceleration factors. In addition, the proposed method enables efficient scan-specific mask prediction with inference cost independent of the training dictionary size.

eess.IV

LaminoDiff: Generative Computed Laminography via Near-Isotropic Spectral Supervision and Anisotropic Geometry

Computed Laminography (CL) is widely used for nondestructive inspection of extended planar objects, but its restricted angular coverage produces an anisotropic point spread function, missing-cone spectral incompleteness, and severe aliasing with interlayer leakage. This paper presents LaminoDiff, a physics-constrained diffusion framework for CL reconstruction. During training, a CT-derived near-isotropic supervision target is reconstructed from full-angle Computed Tomography (CT) projections physically degraded to match CL detector noise and focal-spot blur while retaining full angular coverage; it is withheld from inference. At inference, the reverse process uses only the CL observation. An Anisotropic Representation (AR) constructs depth-aware channels from three adjacent slices: a neighbor average, a center-neighbor residual, and the retained current slice, followed by directional in-plane feature extraction. Experiments on simulated and real multilayer printed circuit board data, including ball grid array and high-frequency stub samples, show that LaminoDiff improves artifact suppression, edge preservation, and depth stratification over analytic Feldkamp--Davis--Kress and representative learning-based baselines.

eess.IV

IViT: A Novel Interpretable Visual Transformer for Skin Disease Detection

The clinical diagnosis of skin diseases is susceptible to interference from inter-class similarity of skin lesions, and over-reliance on clinicians'experience easily leads to subjective bias. Although existing deep learning aided diagnosis methods achieve competitive accuracy, they suffer from the black-box opacity of Vision Transformer (ViT) and poor adaptability to medical few-shot scenarios. Moreover, mainstream explainable algorithms generally face the bottleneck of significant accuracy degradation when improving interpretability. This paper proposes an interpretable ViT (IViT) constrained by Quadratic Programming (QP). The introduced pre-trained transfer learning adapts to few-shot feature extraction. A discrete QP feature selection framework is constructed to screen generic and discriminative features consistent with clinical diagnostic logic. A multi-objective loss function is designed to reduce feature redundancy and optimize activation distribution while preserving classification performance. Experimental results on six standard skin disease datasets show that IViT achieves an accuracy of 93.80%, only 0.21% lower than the baseline, with feature redundancy reduced by 29.5%. Its core activation regions are consistent with clinically concerned lesion areas. The proposed model balances accuracy and interpretability, providing a reliable solution for the clinical deployment of few-shot intelligent skin disease diagnosis.

eess.IV