Securing AI Models Against Backdoor Attacks: A Novel Approach Using Image Steganography

被引:0
|
作者
Ahmadi, Candra [1 ]
Chen, Jiann-Liang [1 ]
Lin, Yu -Ting [1 ]
机构
[1] Natl Taiwan Univ Sci & Technol, Dept Elect Engn, Taipei, Taiwan
来源
JOURNAL OF INTERNET TECHNOLOGY | 2024年 / 25卷 / 03期
关键词
Artificial Intelligence security; Backdoor attack; Deep learning; Image recognition; Image steganography;
D O I
10.53106/160792642024052503012
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Artificial Intelligence (AI) has become ubiquitous, transforming numerous domains including traffic sign recognition, defect detection, and healthcare. However, this widespread adoption has brought about significant cybersecurity challenges, particularly in the form of backdoor attacks, which manipulate training datasets to compromise model integrity. While the integration of AI has proven beneficial, there is a lack of comprehensive strategies to protect AI models from these covert attacks, necessitating innovative approaches for securing AI systems. In this study, we demonstrate a novel methodology that integrates image steganography with deep learning techniques, aiming to obscure backdoor triggers and enhance the resilience of AI models against these attacks. We employ a diverse set of AI models and conduct extensive evaluations in a traffic sign recognition scenario, specifically targeting the STOP sign. The results reveal that shallow models are challenged in learning trigger information and are sensitive to trigger settings, while deeper models achieve an impressive 98.03% attack success rate. The image steganography technique used requires minimal data adjustments, making the triggers more challenging to detect than with traditional methods. Our findings underscore the stealth and severity of backdoor attacks, emphasizing the need for advanced security measures in AI and contributing to the broader understanding and development of robust protections against such attacks.
引用
收藏
页码:465 / 475
页数:11
相关论文
共 50 条
  • [1] A novel scheme for securing image steganography
    Chang, CC
    Yeh, JC
    Hsiao, JY
    [J]. ADVANCES IN MUTLIMEDIA INFORMATION PROCESSING - PCM 2001, PROCEEDINGS, 2001, 2195 : 804 - 811
  • [2] A Novel DWT based Image Securing Method using Steganography
    Baby, Della
    Thomas, Jitha
    Augustine, Gisny
    George, Elsa
    Michael, Neenu Rosia
    [J]. PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGIES, ICICT 2014, 2015, 46 : 612 - 618
  • [3] Backdoor Attacks against Deep Neural Networks by Personalized Audio Steganography
    Liu, Peng
    Zhang, Shuyi
    Yao, Chuanjian
    Ye, Wenzhe
    Li, Xianxian
    [J]. 2022 26TH INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION (ICPR), 2022, : 68 - 74
  • [4] Stealthy Targeted Backdoor Attacks Against Image Captioning
    Fan, Wenshu
    Li, Hongwei
    Jiang, Wenbo
    Hao, Meng
    Yu, Shui
    Zhang, Xiao
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 5655 - 5667
  • [5] Dynamic Backdoor Attacks Against Machine Learning Models
    Salem, Ahmed
    Wen, Rui
    Backes, Michael
    Ma, Shiqing
    Zhang, Yang
    [J]. 2022 IEEE 7TH EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY (EUROS&P 2022), 2022, : 703 - 718
  • [6] Securing web applications against XSS and SQLi attacks using a novel deep learning approach
    Jaydeep R. Tadhani
    Vipul Vekariya
    Vishal Sorathiya
    Samah Alshathri
    Walid El-Shafai
    [J]. Scientific Reports, 14
  • [7] Securing web applications against XSS and SQLi attacks using a novel deep learning approach
    Tadhani, Jaydeep R.
    Vekariya, Vipul
    Sorathiya, Vishal
    Alshathri, Samah
    El-Shafai, Walid
    [J]. SCIENTIFIC REPORTS, 2024, 14 (01)
  • [8] Backdoor Attacks on Image Classification Models in Deep Neural Networks
    Zhang, Quanxin
    Ma, Wencong
    Wang, Yajie
    Zhang, Yaoyuan
    Shi, Zhiwei
    Li, Yuanzhang
    [J]. CHINESE JOURNAL OF ELECTRONICS, 2022, 31 (02) : 199 - 212
  • [9] Robust Image Steganography against General Scaling Attacks
    Liu, Qingliang
    Ni, Jiangqun
    Hu, Xianglei
    [J]. PROCEEDINGS OF THE 31ST ACM INTERNATIONAL CONFERENCE ON MULTIMEDIA, MM 2023, 2023, : 8233 - 8241
  • [10] Backdoor Attacks on Image Classification Models in Deep Neural Networks
    ZHANG Quanxin
    MA Wencong
    WANG Yajie
    ZHANG Yaoyuan
    SHI Zhiwei
    LI Yuanzhang
    [J]. Chinese Journal of Electronics, 2022, 31 (02) : 199 - 212