paper-with-me

홈 › Papers

Mole Recruitment: Poisoning of Image Classifiers via Selective Batch Sampling

2023-03-30 · Ethan Wisdom, Tejas Gokhale, Chaowei Xiao, Yezhou Yang

In this work, we present a data poisoning attack that confounds machine learning models without any manipulation of the image or label. This is achieved by simply leveraging the most confounding natural samples found within the training data itself, in a new form of a targeted attack coined "Mole Recruitment." We define moles as the training samples of a class that appear most similar to samples of another class, and show that simply restructuring training batches with an optimal number of moles can lead to significant degradation in the performance of the targeted class. We show the efficacy of this novel attack in an offline setting across several standard image classification datasets, and demonstrate the real-world viability of this attack in a continual learning (CL) setting. Our analysis reveals that state-of-the-art models are susceptible to Mole Recruitment, thereby exposing a previously undetected vulnerability of image classifiers.

📄 PDF Abstract BibTeX arXiv:2303.17080

Code (1)

wisdeth14/molerecruitment 공식 구현 pytorch

Tasks

Continual LearningData Poisoningimage-classificationImage Classification

Similar Papers 제목 키워드 기반

Hierarchical Selective Recruitment in Linear-Threshold Brain Networks, Part II: Multi-Layer Dynamics and Top-Down Recruitment

2018-09-05 · Erfan Nozari, Jorge Cortés

Goal-driven selective attention (GDSA) is a remarkable function that allows the complex dynamical networks of the brain to support coherent perception and cognition. Part I of this two-part paper proposes a new control-t…

Attacks against Ranking Algorithms with Text Embeddings: a Case Study on Recruitment Algorithms

2021-08-12 · EMNLP (BlackboxNLP) 2021 11 · Anahita Samadi, Debapriya Banerjee, Shirin Nilizadeh

Recently, some studies have shown that text classification tasks are vulnerable to poisoning and evasion attacks. However, little work has investigated attacks against decision making algorithms that use text embeddings,…

Decision MakingSentencetext-classificationText Classification

Selective Poisoning Attack on Deep Neural Networks

2019-07-03 · Symmetry 2019 7 · Hyun Kwon,Hyunsoo Yoon,Ki-Woong Park

Studies related to pattern recognition and visualization using computer technology have been introduced. In particular, deep neural networks (DNNs) provide good performance for image, speech, and pattern recognition. How…

ML Attack Models: Adversarial Attacks and Data Poisoning Attacks

2021-12-06 · Jing Lin, Long Dang, Mohamed Rahouti, Kaiqi Xiong

Many state-of-the-art ML models have outperformed humans in various tasks such as image classification. With such outstanding performance, ML models are widely used today. However, the existence of adversarial attacks an…

Adversarial AttackData Poisoningimage-classificationImage Classification

Systematic Evaluation of Backdoor Data Poisoning Attacks on Image Classifiers

2020-04-24 · Loc Truong, Chace Jones, Brian Hutchinson, Andrew August 외

Backdoor data poisoning attacks have recently been demonstrated in computer vision research as a potential safety risk for machine learning (ML) systems. Traditional data poisoning attacks manipulate training data to ind…

Data Poisoning