Multi-Label Adversarial Perturbations

01/02/2019
by   Qingquan Song, et al.
0

Adversarial examples are delicately perturbed inputs, which aim to mislead machine learning models towards incorrect outputs. While most of the existing work focuses on generating adversarial perturbations in multi-class classification problems, many real-world applications fall into the multi-label setting in which one instance could be associated with more than one label. For example, a spammer may generate adversarial spams with malicious advertising while maintaining the other labels such as topic labels unchanged. To analyze the vulnerability and robustness of multi-label learning models, we investigate the generation of multi-label adversarial perturbations. This is a challenging task due to the uncertain number of positive labels associated with one instance, as well as the fact that multiple labels are usually not mutually exclusive with each other. To bridge this gap, in this paper, we propose a general attacking framework targeting on multi-label classification problem and conduct a premier analysis on the perturbations for deep neural networks. Leveraging the ranking relationships among labels, we further design a ranking-based framework to attack multi-label ranking algorithms. We specify the connection between the two proposed frameworks and separately design two specific methods grounded on each of them to generate targeted multi-label perturbations. Experiments on real-world multi-label image classification and ranking problems demonstrate the effectiveness of our proposed frameworks and provide insights of the vulnerability of multi-label deep learning models under diverse targeted attacking strategies. Several interesting findings including an unpolished defensive strategy, which could potentially enhance the interpretability and robustness of multi-label deep learning models, are further presented and discussed at the end.

READ FULL TEXT

page 1

page 8

research
07/31/2021

T_kML-AP: Adversarial Attacks to Top-k Multi-Label Learning

Top-k multi-label learning, which returns the top-k predicted labels fro...
research
07/11/2022

Towards Effective Multi-Label Recognition Attacks via Knowledge Graph Consistency

Many real-world applications of image recognition require multi-label le...
research
12/24/2019

Simultaneous Identification of Tweet Purpose and Position

Tweet classification has attracted considerable attention recently. Most...
research
06/29/2021

Attack Transferability Characterization for Adversarially Robust Multi-label Classification

Despite of the pervasive existence of multi-label evasion attack, it is ...
research
12/17/2020

Characterizing the Evasion Attackability of Multi-label Classifiers

Evasion attack in multi-label learning systems is an interesting, widely...
research
08/05/2022

ZLPR: A Novel Loss for Multi-label Classification

In the era of deep learning, loss functions determine the range of tasks...
research
10/18/2018

HierLPR: Decision making in hierarchical multi-label classification with local precision rates

In this article we propose a novel ranking algorithm, referred to as Hie...

Please sign up or login with your details

Forgot password? Click here to reset