paper-with-me

Papers

NoiseAttack: An Evasive Sample-Specific Multi-Targeted Backdoor Attack Through White Gaussian Noise

2024-09-03 · Abdullah Arafat Miah, Kaan Icer, Resit Sendag, Yu Bi

Backdoor attacks pose a significant threat when using third-party data for deep learning development. In these attacks, data can be manipulated to cause a trained model to behave improperly when a specific trigger pattern is applied, providing the adversary with unauthorized advantages. While most existing works focus on designing trigger patterns in both visible and invisible to poison the victim class, they typically result in a single targeted class upon the success of the backdoor attack, meaning that the victim class can only be converted to another class based on the adversary predefined value. In this paper, we address this issue by introducing a novel sample-specific multi-targeted backdoor attack, namely NoiseAttack. Specifically, we adopt White Gaussian Noise (WGN) with various Power Spectral Densities (PSD) as our underlying triggers, coupled with a unique training strategy to execute the backdoor attack. This work is the first of its kind to launch a vision backdoor attack with the intent to generate multiple targeted classes with minimal input configuration. Furthermore, our extensive experimental results demonstrate that NoiseAttack can achieve a high attack success rate against popular network architectures and datasets, as well as bypass state-of-the-art backdoor detection methods. Our source code and experiments are available at https://github.com/SiSL-URI/NoiseAttack/tree/main.

📄 PDF Abstract BibTeX arXiv:2409.02251

Code (1)

sisl-uri/noiseattack 공식 구현 pytorch

Tasks

Backdoor Attack

Methods 이 논문이 사용한 방법론

Focus 설명 없음

Similar Papers 제목 키워드 기반

Group-based Robustness: A General Framework for Customized Robustness in the Real World

2023-06-29 · Weiran Lin, Keane Lucas, Neo Eyal, Lujo Bauer 외

Machine-learning models are known to be vulnerable to evasion attacks that perturb model inputs to induce misclassifications. In this work, we identify real-world scenarios where the true threat cannot be assessed accura…

EVADE: Multimodal Benchmark for Evasive Content Detection in E-Commerce Applications

2025-05-23 · Ancheng Xu, Zhihao Yang, Jingpeng Li, Guanghu Yuan 외

E-commerce platforms increasingly rely on Large Language Models (LLMs) and Vision-Language Models (VLMs) to detect illicit or misleading product content. However, these models remain vulnerable to evasive content: inputs…

Multimodal Reasoning

TokenSwap: Backdoor Attack on the Compositional Understanding of Large Vision-Language Models

2025-09-29 · Zhifang Zhang, Qiqi Tao, Jiaqi Lv, Na Zhao 외 arxiv

Large vision-language models (LVLMs) have achieved impressive performance across a wide range of vision-language tasks, while they remain vulnerable to backdoor attacks. Existing backdoor attacks on LVLMs aim to force th…

Improving Generalizability and Undetectability for Targeted Adversarial Attacks on Multimodal Pre-trained Models

2025-09-24 · Zhifang Zhang, Jiahan Zhang, Shengjie Zhou, Qi Wei 외 arxiv

Multimodal pre-trained models (e.g., ImageBind), which align distinct data modalities into a shared embedding space, have shown remarkable success across downstream tasks. However, their increasing adoption raises seriou…

Anomaly Detection

DiffFace-Edit: A Diffusion-Based Facial Dataset for Forgery-Semantic Driven Deepfake Detection Analysis

2026-01-20 · Feng Ding, Wenhui Yi, Xinan He, Mengyao Xiao 외 arxiv

Generative models now produce imperceptible, fine-grained manipulated faces, posing significant privacy risks. However, existing AI-generated face datasets generally lack focus on samples with fine-grained regional manip…

DeepFake Detection