AI Chat Paper
Note: Please note that the following content is generated by AMiner AI. SciOpen does not take any responsibility related to this content.
{{lang === 'zh_CN' ? '文章概述' : 'Summary'}}
{{lang === 'en_US' ? '中' : 'Eng'}}
Chat more with AI
Article Link
Collect
Show Outline
Outline
Show full outline
Hide outline
Outline
Show full outline
Hide outline
Open Access

Improving adversarial robustness in remote sensing scene classification via non-local feature decoupling and soft self-attention masking recalibration

Shihao WUQuan PANMingxin FUYuan GAOYang LI( )
School of Automation, Northwestern Polytechnical University, Xi’an 710129, China

Peer review under responsibility of Editorial Committee of CJA.

Show Author Information

Abstract

Despite the tremendous success of Deep Neural Networks (DNNs) in Remote Sensing (RS) scene classification, their vulnerability to adversarial examples leads to significant performance degradation, which can severely impact the accuracy of tasks such as RS scene classification. Therefore, it is essential to conduct a comprehensive study of the impact of adversarial attacks on RS scene classification and to develop effective defense methods to ensure the security of these tasks. In this article, we proposed a novel defense framework, named Non-local feature Decoupling and Soft-thresholding Masking (NDSM), to purify adversarial perturbations in adversarial samples. The Non-local feature Decoupling (ND) module decouples the intermediate feature map into robust and non-robust features by using denoising blocks containing non-local means operations as feature decoupling modules. The Soft-threshold Masking (SM) module further suppresses features with insignificant correlation by soft-thresholding the output of the self-attention matrix, selectively extracting valuable information for classification from non-robust features, and combining it with robust features to obtain a reconstructed robust feature map. The proposed NDSM has demonstrated its effectiveness in purifying various adversarial attacks and achieving superior defense performance on three RS classification benchmark datasets, namely UC Merced (UCM), Aerial Image Dataset (AID), and NWPU-RESISC45, when confronted with both known and unknown attacks.

References

【1】
【1】
 
 
Chinese Journal of Aeronautics

{{item.num}}

Comments on this article

Go to comment

< Back to all reports

Review Status: {{reviewData.commendedNum}} Commended , {{reviewData.revisionRequiredNum}} Revision Required , {{reviewData.notCommendedNum}} Not Commended Under Peer Review

Review Comment

Close
Close
Cite this article:
WU S, PAN Q, FU M, et al. Improving adversarial robustness in remote sensing scene classification via non-local feature decoupling and soft self-attention masking recalibration. Chinese Journal of Aeronautics, 2026, 39(4). https://doi.org/10.1016/j.cja.2025.103937

12

Views

0

Crossref

0

Web of Science

0

Scopus

0

CSCD

Received: 14 April 2025
Revised: 01 July 2025
Accepted: 22 September 2025
Published: 24 November 2025
© 2025 The Author(s). Chinese Society of Aeronautics and Astronautics.

This is an open access article under the CC BY-NC-ND license (http://creativecommons.org/licenses/by-nc-nd/4.0/).