paper-with-me

홈 › Papers

ExploreADV: Towards exploratory attack for Neural Networks

2023-01-01 · Tianzuo Luo, Yuyi Zhong, Siaucheng Khoo

Although deep learning has made remarkable progress in processing various types of data such as images, text and speech, they are known to be susceptible to adversarial perturbations: perturbations specifically designed and added to the input to make the target model produce erroneous output. Most of the existing studies on generating adversarial perturbations attempt to perturb the entire input indiscriminately. In this paper, we propose ExploreADV, a general and flexible adversarial attack system that is capable of modeling regional and imperceptible attacks, allowing users to explore various kinds of adversarial examples as needed. We adapt and combine two existing boundary attack methods, DeepFool and Brendel\&Bethge Attack, and propose a mask-constrained adversarial attack system, which generates minimal adversarial perturbations under the pixel-level constraints, namely ``mask-constraints''. We study different ways of generating such mask-constraints considering the variance and importance of the input features, and show that our adversarial attack system offers users good flexibility to focus on sub-regions of inputs, explore imperceptible perturbations and understand the vulnerability of pixels/regions to adversarial attacks. We demonstrate our system to be effective based on extensive experiments and user study.

📄 PDF Abstract BibTeX arXiv:2301.01223

Code (0)

등록된 구현이 없습니다.

Tasks

Adversarial Attack

Similar Papers 제목 키워드 기반

Generative Adversarial Networks for Black-Box API Attacks with Limited Training Data

2019-01-25 · Yi Shi, Yalin E. Sagduyu, Kemal Davaslioglu, Jason H. Li

As online systems based on machine learning are offered to public or paid subscribers via application programming interfaces (APIs), they become vulnerable to frequent exploits and attacks. This paper studies adversarial…

BIG-bench Machine LearningGenerative Adversarial NetworkInference Attack

Active Deep Learning Attacks under Strict Rate Limitations for Online API Calls

2018-11-05 · Yi Shi, Yalin E. Sagduyu, Kemal Davaslioglu, Jason H. Li

Machine learning has been applied to a broad range of applications and some of them are available online as application programming interfaces (APIs) with either free (trial) or paid subscriptions. In this paper, we stud…

Active LearningBIG-bench Machine LearningInference Attack

Recovery from Adversarial Attacks in Cyber-physical Systems: Shallow, Deep and Exploratory Works

2024-04-06 · Pengyuan Lu, Lin Zhang, Mengyu Liu, Kaustubh Sridhar 외

Cyber-physical systems (CPS) have experienced rapid growth in recent decades. However, like any other computer-based systems, malicious attacks evolve mutually, driving CPS to undesirable physical states and potentially …

GCG Attack On A Diffusion LLM

2025-12-30 · Ruben Neyroud, Sam Corley arxiv

While most LLMs are autoregressive, diffusion-based LLMs have recently emerged as an alternative method for generation. Greedy Coordinate Gradient (GCG) attacks have proven effective against autoregressive models, but th…

Mitigating Evasion Attacks in Fog Computing Resource Provisioning Through Proactive Hardening

2026-03-26 · Younes Salmi, Hanna Bogucka arxiv

This paper investigates the susceptibility to model integrity attacks that overload virtual machines assigned by the k-means algorithm used for resource provisioning in fog networks. The considered k-means algorithm runs…