Unsupervised Adversarial Detection without Extra Model: Training Loss Should Change

08/07/2023
by   Chien Cheng Chyou, et al.
0

Adversarial robustness poses a critical challenge in the deployment of deep learning models for real-world applications. Traditional approaches to adversarial training and supervised detection rely on prior knowledge of attack types and access to labeled training data, which is often impractical. Existing unsupervised adversarial detection methods identify whether the target model works properly, but they suffer from bad accuracies owing to the use of common cross-entropy training loss, which relies on unnecessary features and strengthens adversarial attacks. We propose new training losses to reduce useless features and the corresponding detection method without prior knowledge of adversarial attacks. The detection rate (true positive rate) against all given white-box attacks is above 93.9 (DF(∞)), while the false positive rate is barely 2.5 method works well in all tested attack types and the false positive rates are even better than the methods good at certain types.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/10/2023

MIXPGD: Hybrid Adversarial Training for Speech Recognition Systems

Automatic speech recognition (ASR) systems based on deep neural networks...
research
08/17/2023

A White-Box False Positive Adversarial Attack Method on Contrastive Loss-Based Offline Handwritten Signature Verification Models

In this paper, we tackle the challenge of white-box false positive adver...
research
09/07/2023

Adversarially Robust Deep Learning with Optimal-Transport-Regularized Divergences

We introduce the ARMOR_D methods as novel approaches to enhancing the ad...
research
07/05/2023

Information-Based Heavy Hitters for Real-Time DNS Data Exfiltration Detection and Prevention

Data exfiltration over the DNS protocol and its detection have been rese...
research
01/21/2019

Achievable Rates of Attack Detection Strategies in Echo-Assisted Communication

We consider an echo-assisted communication model wherein block-coded mes...
research
03/25/2018

DeepVesselNet: Vessel Segmentation, Centerline Prediction, and Bifurcation Detection in 3-D Angiographic Volumes

We present DeepVesselNet, an architecture tailored to the challenges to ...
research
12/24/2022

A Bayesian Robust Regression Method for Corrupted Data Reconstruction

Because of the widespread existence of noise and data corruption, recove...

Please sign up or login with your details

Forgot password? Click here to reset