Attack Transferability Characterization for Adversarially Robust Multi-label Classification

06/29/2021
by   Zhuo Yang, et al.
0

Despite of the pervasive existence of multi-label evasion attack, it is an open yet essential problem to characterize the origin of the adversarial vulnerability of a multi-label learning system and assess its attackability. In this study, we focus on non-targeted evasion attack against multi-label classifiers. The goal of the threat is to cause miss-classification with respect to as many labels as possible, with the same input perturbation. Our work gains in-depth understanding about the multi-label adversarial attack by first characterizing the transferability of the attack based on the functional properties of the multi-label classifier. We unveil how the transferability level of the attack determines the attackability of the classifier via establishing an information-theoretic analysis of the adversarial risk. Furthermore, we propose a transferability-centered attackability assessment, named Soft Attackability Estimator (SAE), to evaluate the intrinsic vulnerability level of the targeted multi-label classifier. This estimator is then integrated as a transferability-tuning regularization term into the multi-label learning paradigm to achieve adversarially robust classification. The experimental study on real-world data echos the theoretical analysis and verify the validity of the transferability-regularized multi-label learning method.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
12/17/2020

Characterizing the Evasion Attackability of Multi-label Classifiers

Evasion attack in multi-label learning systems is an interesting, widely...
research
04/12/2023

Evaluation of ChatGPT Model for Vulnerability Detection

In this technical report, we evaluated the performance of the ChatGPT an...
research
01/02/2019

Multi-Label Adversarial Perturbations

Adversarial examples are delicately perturbed inputs, which aim to misle...
research
10/28/2022

Dysfluencies Seldom Come Alone – Detection as a Multi-Label Problem

Specially adapted speech recognition models are necessary to handle stut...
research
07/31/2021

T_kML-AP: Adversarial Attacks to Top-k Multi-Label Learning

Top-k multi-label learning, which returns the top-k predicted labels fro...
research
01/13/2015

On Generalizing the C-Bound to the Multiclass and Multi-label Settings

The C-bound, introduced in Lacasse et al., gives a tight upper bound on ...
research
05/09/2023

Minimal Learning Machine for Multi-Label Learning

Distance-based supervised method, the minimal learning machine, construc...

Please sign up or login with your details

Forgot password? Click here to reset