Query-limited Black-box Attacks to Classifiers

12/23/2017
by   Fnu Suya, et al.
0

We study black-box attacks on machine learning classifiers where each query to the model incurs some cost or risk of detection to the adversary. We focus explicitly on minimizing the number of queries as a major objective. Specifically, we consider the problem of attacking machine learning classifiers subject to a budget of feature modification cost while minimizing the number of queries, where each query returns only a class and confidence score. We describe an approach that uses Bayesian optimization to minimize the number of queries, and find that the number of queries can be reduced to approximately one tenth of the number needed through a random strategy for scenarios where the feature modification cost budget is low.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
06/05/2023

Evading Black-box Classifiers Without Breaking Eggs

Decision-based evasion attacks repeatedly query a black-box classifier t...
research
09/30/2019

Black-box Adversarial Attacks with Bayesian Optimization

We focus on the problem of black-box adversarial attacks, where the aim ...
research
12/20/2018

The Query Complexity of a Permutation-Based Variant of Mastermind

We study the query complexity of a permutation-based variant of the gues...
research
06/08/2019

Making targeted black-box evasion attacks effective and efficient

We investigate how an adversary can optimally use its query budget for t...
research
11/25/2020

SurFree: a fast surrogate-free black-box attack

Machine learning classifiers are critically prone to evasion attacks. Ad...
research
05/20/2021

An Exact Poly-Time Membership-Queries Algorithm for Extraction a three-Layer ReLU Network

As machine learning increasingly becomes more prevalent in our everyday ...
research
10/12/2018

Facility Locations Utility for Uncovering Classifier Overconfidence

Assessing the predictive accuracy of black box classifiers is challengin...

Please sign up or login with your details

Forgot password? Click here to reset