On the Trade-off between Adversarial and Backdoor Robustness

被引:0
|
作者
Weng, Cheng-Hsin [1 ]
Lee, Yan-Ting [1 ]
Wu, Shan-Hung [1 ]
机构
[1] Natl Tsing Hua Univ, Dept Comp Sci, Hsinchu, Taiwan
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Deep neural networks are shown to be susceptible to both adversarial attacks and backdoor attacks. Although many defenses against an individual type of the above attacks have been proposed, the interactions between the vulnerabilities of a network to both types of attacks have not been carefully investigated yet. In this paper, we conduct experiments to study whether adversarial robustness and backdoor robustness can affect each other and find a trade-off-by increasing the robustness of a network to adversarial examples, the network becomes more vulnerable to backdoor attacks. We then investigate the cause and show how such a trade-off can be exploited for either good or bad purposes. Our findings suggest that future research on defense should take both adversarial and backdoor attacks into account when designing algorithms or robustness measures to avoid pitfalls and a false sense of security.
引用
收藏
页数:11
相关论文
共 50 条
  • [31] Trade-off between quality and cost
    Huang, YF
    [J]. QUALITY & QUANTITY, 2001, 35 (03) : 265 - 276
  • [32] Is there a trade-off between employment and growth?
    Eriksson, C
    [J]. OXFORD ECONOMIC PAPERS-NEW SERIES, 1997, 49 (01): : 77 - 88
  • [33] Vaccination as a trade-off between risks
    David Crainich
    Louis Eeckhoudt
    Mario Menegatti
    [J]. Italian Economic Journal, 2019, 5 : 455 - 472
  • [34] Vaccination as a trade-off between risks
    Crainich, David
    Eeckhoudt, Louis
    Menegatti, Mario
    [J]. ITALIAN ECONOMIC JOURNAL, 2019, 5 (03) : 455 - 472
  • [35] THE TRADE-OFF BETWEEN EQUALITY AND EFFICIENCY
    BROWNING, EK
    JOHNSON, WR
    [J]. JOURNAL OF POLITICAL ECONOMY, 1984, 92 (02) : 175 - 203
  • [36] Trade-off between Quality and Cost
    Ying-Fang Huang
    [J]. Quality and Quantity, 2001, 35 : 265 - 276
  • [37] Multi-objective Tuning of Generalized Predictive Controller: A Trade-off Between Performance and Robustness
    de Oliveira Junior, Javan A.
    Assuncao, Wesley K. G.
    Jeronymo, Daniel C.
    [J]. 2018 VIII BRAZILIAN SYMPOSIUM ON COMPUTING SYSTEMS ENGINEERING (SBESC 2018), 2018, : 178 - 183
  • [38] Adversarial Deep Embedded Clustering: On a Better Trade-off Between Feature Randomness and Feature Drift
    Mrabah, Nairouz
    Bouguessa, Mohamed
    Ksantini, Riadh
    [J]. IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2022, 34 (04) : 1603 - 1617
  • [39] Dimensionality Reduction for Data Visualization and Linear Classification, and the Trade-off between Robustness and Classification Accuracy
    Becker, Martin
    Lippel, Jens
    Zielke, Thomas
    [J]. 2020 25TH INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION (ICPR), 2021, : 6478 - 6485
  • [40] Trade-off Between Robustness andWorst-Case Performance in Min-Max Optimization
    Edo, Hinata
    Miyauchi, Yoshiki
    Maki, Atsuo
    Akimoto, Youhei
    [J]. PROCEEDINGS OF THE 2023 GENETIC AND EVOLUTIONARY COMPUTATION CONFERENCE, GECCO 2023, 2023, : 1339 - 1347