paper-with-me

홈 › Papers

Exploring Robustness of Visual State Space model against Backdoor Attacks

2024-08-21 · Cheng-Yi Lee, Cheng-Chang Tsai, Chia-Mu Yu, Chun-Shien Lu

Visual State Space Model (VSS) has demonstrated remarkable performance in various computer vision tasks. However, in the process of development, backdoor attacks have brought severe challenges to security. Such attacks cause an infected model to predict target labels when a specific trigger is activated, while the model behaves normally on benign samples. In this paper, we conduct systematic experiments to comprehend on robustness of VSS through the lens of backdoor attacks, specifically how the state space model (SSM) mechanism affects robustness. We first investigate the vulnerability of VSS to different backdoor triggers and reveal that the SSM mechanism, which captures contextual information within patches, makes the VSS model more susceptible to backdoor triggers compared to models without SSM. Furthermore, we analyze the sensitivity of the VSS model to patch processing techniques and discover that these triggers are effectively disrupted. Based on these observations, we consider an effective backdoor for the VSS model that recurs in each patch to resist patch perturbations. Extensive experiments across three datasets and various backdoor attacks reveal that the VSS model performs comparably to Transformers (ViTs) but is less robust than the Gated CNNs, which comprise only stacked Gated CNN blocks without SSM.

📄 PDF Abstract BibTeX arXiv:2408.11679

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

Exploring Robust Architectures for Deep Artificial Neural Networks

2021-06-30 · Asim Waqas, Ghulam Rasool, Hamza Farooq, Nidhal C. Bouaynaya

The architectures of deep artificial neural networks (DANNs) are routinely studied to improve their predictive performance. However, the relationship between the architecture of a DANN and its robustness to noise and adv…

AutoMLimage-classificationImage ClassificationNeural Architecture Search+1

BadScan: An Architectural Backdoor Attack on Visual State Space Models

2024-11-26 · Om Suhas Deshmukh, Sankalp Nagaonkar, Achyut Mani Tripathi, Ashish Mishra

The newly introduced Visual State Space Model (VMamba), which employs \textit{State Space Mechanisms} (SSM) to interpret images as sequences of patches, has shown exceptional performance compared to Vision Transformers (…

Backdoor Attackimage-classificationImage ClassificationState Space Models+1

Exploring DNN Robustness Against Adversarial Attacks Using Approximate Multipliers

2024-04-17 · Mohammad Javad Askarizadeh, Ebrahim Farahmand, Jorge Castro-Godinez, Ali Mahani 외

Deep Neural Networks (DNNs) have advanced in many real-world applications, such as healthcare and autonomous driving. However, their high computational complexity and vulnerability to adversarial attacks are ongoing chal…

Autonomous Driving

Exploring Adversarial Attacks and Defenses in Vision Transformers trained with DINO

2022-06-14 · Javier Rando, Nasib Naimi, Thomas Baumann, Max Mathys

This work conducts the first analysis on the robustness against adversarial attacks on self-supervised Vision Transformers trained using DINO. First, we evaluate whether features learned through self-supervision are more…

Adversarial Robustness

VisMoDAl: Visual Analytics for Evaluating and Improving Corruption Robustness of Vision-Language Models

2025-09-18 · Huanchen Wang, Wencheng Zhang, Zhiqiang Wang, Zhicong Lu 외 arxiv

Vision-language (VL) models have shown transformative potential across various critical domains due to their capability to comprehend multi-modal information. However, their performance frequently degrades under distribu…

Data AugmentationImage Captioning