信息通信技术与政策

信息通信技术与政策

信息通信技术与政策 ›› 2026, Vol. 52 ›› Issue (8): 37-44.doi: 10.12267/j.issn.2096-5931.2026.006

专题:数字安全与应用 上一篇    下一篇

面向智能模型的对抗攻击与防御专利技术发展研究

Research of patent technology development for adversarial attacks and defenses against intelligent models

刘洁   

  1. 国家知识产权局专利局专利审查协作北京中心, 北京 100072
  • 收稿日期:2027-07-02 出版日期:2026-08-25 发布日期:2026-09-02
  • 作者简介:
    刘洁,国家知识产权局专利局专利审查协作北京中心助理研究员,主要从事计算机领域的发明专利审查工作

LIU Jie   

  1. Patent Examination Cooperation Center of the Patent Office, SIPO, Beijing 100072, China
  • Received:2027-07-02 Online:2026-08-25 Published:2026-09-02

摘要:

鉴于智能模型易受对抗样本攻击干扰,存在识别误判、功能失效等安全隐患,一定程度上制约了其安全落地应用,聚焦对抗攻击与防御领域专利技术,梳理国内外相关专利成果,分类总结主要的对抗样本生成技术和针对对抗样本的核心防御技术手段,梳理相关专利布局特点与技术演进趋势,以期为相关领域技术研发、专利布局及安全体系构建提供参考。

关键词: 对抗攻击, 对抗样本, 对抗防御, 专利, 深度学习

Abstract:

Given that intelligent models are vulnerable to adversarial sample attacks, which pose security risks such as misidentification and functional failure, their safe practical application is somewhat constrained. This paper focuses on patented technologies in the fields of adversarial attacks and defenses, reviews domestic and overseas related patent achievements, categorizes and summarizes key adversarial sample generation techniques and core defense methods against adversarial samples, and analyzes relevant patent layout characteristics and technological evolution trends, aiming to provide references for technological research, patent strategy, and security system development in related fields.

Key words: adversarial attack, adversarial sample, adversarial defense, patent, deep learning

中图分类号: