Multi-Targeted Poisoning Attack in Deep Neural Networks

被引:0
|
作者
Kwon H. [1 ]
Cho S. [2 ]
机构
[1] Department of Artificial Intelligence and Data Science, Korea Military Academy
[2] Department of Electrical Engineering, Korea Military Academy
来源
基金
新加坡国家研究基金会;
关键词
deep neural network; different classes; machine learning; poisoning attack;
D O I
10.1587/transinf.2022NGL0006
中图分类号
学科分类号
摘要
Deep neural networks show good performance in image recognition, speech recognition, and pattern analysis. However, deep neural networks also have weaknesses, one of which is vulnerability to poisoning attacks. A poisoning attack reduces the accuracy of a model by training the model on malicious data. A number of studies have been conducted on such poisoning attacks. The existing type of poisoning attack causes misrecognition by one classifier. In certain situations, however, it is necessary for multiple models to misrecognize certain data as different specific classes. For example, if there are enemy autonomous vehicles A, B, and C, a poisoning attack could mislead A to turn to the left, B to stop, and C to turn to the right simply by using a traffic sign. In this paper, we propose a multi-targeted poisoning attack method that causes each of several models to misrecognize certain data as a different target class. This study used MNIST and CIFAR10 as datasets and Tensorflow as a machine learning library. The experimental results show that the proposed scheme has a 100% average attack success rate on MNIST and CIFAR10 when malicious data accounting for 5% of the training dataset have been used for training. Copyright © 2022 The Institute of Electronics, Information and Communication Engineers.
引用
收藏
页码:1916 / 1920
页数:4
相关论文
共 50 条
  • [31] Control of spacecraft with multi-targeted flexible antennas
    Meirovitch, Leonard, 1600, (38):
  • [32] Sponge Attack Against Multi-Exit Networks With Data Poisoning
    Huang, Benxuan
    Pang, Lihui
    Fu, Anmin
    Al-Sarawi, Said F.
    Abbott, Derek
    Gao, Yansong
    IEEE ACCESS, 2024, 12 : 33843 - 33851
  • [33] A Targeted Attack on Black-Box Neural Machine Translation with Parallel Data Poisoning
    Xu, Chang
    Wang, Jun
    Tang, Yuqing
    Guzman, Francisco
    Rubinstein, Benjamin I. P.
    Cohn, Trevor
    PROCEEDINGS OF THE WORLD WIDE WEB CONFERENCE 2021 (WWW 2021), 2021, : 3638 - 3650
  • [34] Shifting the Paradigm with a Multi-Targeted Approach to ALS
    Tracik, Ferenc
    Zimri, Shiran
    Shtossel, Diana
    Sasson, Vered
    Ben-Noon, Alon
    Drory, Vivian
    Chio, Adriano
    Shefner, Jeremy
    Cudkowicz, Merit
    MUSCLE & NERVE, 2022, 66 : S45 - S46
  • [35] Multi-targeted therapy by curcumin: how spicy is it?
    Goel, Ajay
    Jhurani, Sonia
    Aggarwal, Bharat B.
    MOLECULAR NUTRITION & FOOD RESEARCH, 2008, 52 (09) : 1010 - 1030
  • [36] Targeted Data Poisoning Attacks Against Continual Learning Neural Networks
    Li, Huayu
    Ditzler, Gregory
    2022 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2022,
  • [37] Multi-targeted prevention and therapy of cancer by proanthocyanidins
    Nandakumar, Vijayalakshmi
    Singh, Tripti
    Katiyar, Santosh K.
    CANCER LETTERS, 2008, 269 (02) : 378 - 387
  • [38] Multi-targeted approach in the treatment of thyroid cancer
    Zarebczan, B.
    Chen, H.
    MINERVA CHIRURGICA, 2010, 65 (01) : 59 - 69
  • [39] A multi-targeted approach to treating bone metastases
    Camacho, Daniel F.
    Pienta, Kenneth J.
    CANCER AND METASTASIS REVIEWS, 2014, 33 (2-3) : 545 - 553
  • [40] Multi-Targeted Inhibition of an Essential Bacterial Enzyme
    da Costa, Tatiana P. Soares
    Gardi, Chamodi K.
    Christoff, Rebecca
    Sutton, J. Mark
    Abbott, Belinda M.
    Perugini, Matthew A.
    FASEB JOURNAL, 2018, 32 (01):