A Novel Backdoor Detection Approach Using Entropy-Based Measures

被引:0
|
作者
Surendrababu, Hema Karnam [1 ,2 ]
Nagaraj, Nithin [3 ]
机构
[1] Univ Transdisciplinary Hlth Sci & Technol, Bengaluru 560012, Karnataka, India
[2] Natl Inst Adv Studies, Indian Inst Sci Campus, Sch Conflict & Secur Studies, Bengaluru 560012, Karnataka, India
[3] Natl Inst Adv Studies, Indian Inst Sci Campus, Sch Humanities, Consciousness Studies Programme, Bengaluru 560012, Karnataka, India
来源
IEEE ACCESS | 2024年 / 12卷
关键词
Entropy; Complexity theory; Training; Data models; Computational modeling; Vectors; Time series analysis; Artificial intelligence; Detection algorithms; Data integrity; Data poisoning; backdoor attacks; backdoor defenses; approximate entropy; sample entropy; TIME-SERIES ANALYSIS; APPROXIMATE ENTROPY; COMPLEXITY; COMPRESSION;
D O I
10.1109/ACCESS.2024.3444273
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Amidst the recent technological breakthroughs and increased integration of Artificial Intelligence (AI) technologies across various domains, it is imperative to consider the myriad security threats posed by AI. One of the significant attack vectors on AI models is the backdoor attack, which involves maliciously manipulating the model's behaviour by inserting hidden patterns or triggers into training datasets. In this paper our primary focus is on the defenses for the backdoor attacks mounted via poisoned training datasets. While many backdoor defense mechanisms have been proposed in the context of text, image, and audio domains, a majority of these defense mechanisms focus on training a specific model to detect backdoor triggers. Our current work proposes a novel model agnostic backdoor detection approach that utilizes complexity/entropy-based measures. In this study, we demonstrate the limitations of currently existing entropy measures - Sample Entropy and Approximate Entropy in detecting backdoor triggers in poisoned datasets. Consequently, we propose a novel modification of the Manhattan metric in the Entropy calculation and incorporate it in the complexity measures. This modified approach is shown to successfully detect backdoor triggers in datasets from not only the Natural Language Processing (NLP) domain, but also from the Financial and Geological domains. The effectiveness of the proposed approach was further substantiated with the high F1 scores in the range of 0.92 to 1.00 across the datasets, and with zero false negatives for the real-world datasets from the Financial and the Geological domains.
引用
收藏
页码:114057 / 114072
页数:16
相关论文
共 50 条
  • [21] Entropy-based fade modeling and detection
    San Pedro Wandelmer, Jose
    Dominguez Cabrerizo, Sergio
    Denis, Nicolas
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2007, 23 (04) : 1265 - 1280
  • [22] Entropy-Based Anomaly Detection in a Network
    Ajay Shankar Shukla
    Rohit Maurya
    Wireless Personal Communications, 2018, 99 : 1487 - 1501
  • [23] Entropy-Based Metrics for Occupancy Detection Using Energy Demand
    Hock, Denis
    Kappes, Martin
    Ghita, Bogdan
    ENTROPY, 2020, 22 (07)
  • [24] A novel subspace outlier detection method by entropy-based clustering algorithm
    Zheng Zuo
    Ziqiang Li
    Pengsen Cheng
    Jian Zhao
    Scientific Reports, 13
  • [25] Community Detection in Location-based Social Networks: An Entropy-based Approach
    Liu, Jiahao
    Li, You
    Ling, Guohui
    Li, Ronghua
    Zheng, Zibin
    2016 IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION TECHNOLOGY (CIT), 2016, : 452 - 459
  • [26] Entropy-based Network Anomaly Detection
    Callegari, Christian
    Giordano, Stefano
    Pagano, Michele
    2017 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS (ICNC), 2016, : 334 - 340
  • [27] Entropy-based concept shift detection
    Vorburger, Peter
    Bernstein, Abraham
    ICDM 2006: SIXTH INTERNATIONAL CONFERENCE ON DATA MINING, PROCEEDINGS, 2006, : 1113 - +
  • [28] The Inadequacy of Entropy-Based Ransomware Detection
    McIntosh, Timothy
    Jang-Jaccard, Julian
    Watters, Paul
    Susnjak, Teo
    NEURAL INFORMATION PROCESSING, ICONIP 2019, PT V, 2019, 1143 : 181 - 189
  • [29] ENTROPY-BASED RAIN DETECTION AND REMOVAL
    Jha, Rajib Kumar
    Mohanty, Sraban Kumar
    Maitrey, Anand
    2013 INTERNATIONAL CONFERENCE ON CONTROL, AUTOMATION, ROBOTICS AND EMBEDDED SYSTEMS (CARE-2013), 2013,
  • [30] A TOPOLOGICAL ENTROPY-BASED APPROACH FOR DAMAGE DETECTION OF CIVIL ENGINEERING STRUCTURES
    Jimenez-Alonso, Javier Fernando
    Lopez-Martinez, Javier
    Blanco-Claraco, Jose Luis
    Gonzalez-Diaz, Rocio
    Saez, Andres
    CMMOST 2019: 5TH INTERNATIONAL CONFERENCE ON MECHANICAL MODELS IN STRUCTURAL ENGINEERING (CMMOST 2019), 2019, : 35 - 42