Improving Adversarial Robustness of Ensemble Classifiers by Diversified Feature Selection and Stochastic Aggregation

被引:0
|
作者
Zhang, Fuyong [1 ]
Li, Kuan [1 ]
Ren, Ziliang [1 ]
机构
[1] Dongguan Univ Technol, Sch Comp Sci & Technol, Dongguan 523808, Peoples R China
关键词
adversarial machine learning; evasion attacks; classifier robustness; ensemble classifiers; gradient correlation;
D O I
10.3390/math12060834
中图分类号
O1 [数学];
学科分类号
0701 ; 070101 ;
摘要
Learning-based classifiers are found to be vulnerable to attacks by adversarial samples. Some works suggested that ensemble classifiers tend to be more robust than single classifiers against evasion attacks. However, recent studies have shown that this is not necessarily the case under more realistic settings of black-box attacks. In this paper, we propose a novel ensemble approach to improve the robustness of classifiers against evasion attacks by using diversified feature selection and a stochastic aggregation strategy. Our proposed scheme includes three stages. Firstly, the adversarial feature selection algorithm is used to select a feature each time that can trade-offbetween classification accuracy and robustness, and add it to the feature vector bank. Secondly, each feature vector in the bank is used to train a base classifier and is added to the base classifier bank. Finally, m classifiers from the classifier bank are randomly selected for decision-making. In this way, it can cause each classifier in the base classifier bank to have good performance in terms of classification accuracy and robustness, and it also makes it difficult to estimate the gradients of the ensemble accurately. Thus, the robustness of classifiers can be improved without reducing the classification accuracy. Experiments performed using both Linear and Kernel SVMs on genuine datasets for spam filtering, malware detection, and handwritten digit recognition demonstrate that our proposed approach significantly improves the classifiers' robustness against evasion attacks.
引用
收藏
页数:21
相关论文
共 50 条
  • [41] Ensemble Feature Selection using Rank Aggregation Methods for Population Genomic Data
    Kavakiotis, Ioannis
    Triantafyllidis, Alexandros
    Tsoumakas, Grigorios
    Vlahavas, Ioannis
    [J]. 9TH HELLENIC CONFERENCE ON ARTIFICIAL INTELLIGENCE (SETN 2016), 2016,
  • [42] A hybrid data mining model of feature selection algorithms and ensemble learning classifiers for credit scoring
    Koutanaei, Fatemeh Nemati
    Sajedi, Hedieh
    Khanbabaei, Mohammad
    [J]. JOURNAL OF RETAILING AND CONSUMER SERVICES, 2015, 27 : 11 - 23
  • [43] Integrated Intrusion Detection Model Using Chi-Square Feature Selection and Ensemble of Classifiers
    Thaseen, I. Sumaiya
    Kumar, Ch. Aswani
    Ahmad, Amir
    [J]. ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2019, 44 (04) : 3357 - 3368
  • [44] Integrated Intrusion Detection Model Using Chi-Square Feature Selection and Ensemble of Classifiers
    I. Sumaiya Thaseen
    Ch. Aswani Kumar
    Amir Ahmad
    [J]. Arabian Journal for Science and Engineering, 2019, 44 : 3357 - 3368
  • [45] An Optimized Feature Selection Method Using Ensemble Classifiers in Software Defect Prediction for Healthcare Systems
    Mohammad, Uzma Ghulam
    Imtiaz, Salma
    Shakya, Manoj
    Almadhor, Ahmad
    Anwar, Fareeha
    [J]. WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2022, 2022
  • [46] Non-informative noise-enhanced stochastic neural networks for improving adversarial robustness
    Yang, Hao
    Wang, Min
    Wang, Qi
    Yu, Zhengfei
    Jin, Guangyin
    Zhou, Chunlai
    Zhou, Yun
    [J]. INFORMATION FUSION, 2024, 108
  • [47] Mobile app traffic flow feature extraction and selection for improving classification robustness
    Liu, Zhen
    Wang, Ruoyu
    Japkowicz, Nathalie
    Cai, Yongming
    Tang, Deyu
    Cai, Xianfa
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2019, 125 : 190 - 208
  • [48] Supervised Rank Aggregation (SRA): A Novel Rank Aggregation Approach for Ensemble-based Feature Selection
    Jain, Rahi
    Xu, Wei
    [J]. Recent Advances in Computer Science and Communications, 2024, 17 (03)
  • [49] Improving the performance of machine learning classifiers for Breast Cancer diagnosis based on feature selection
    Perez, Noel
    Guevara, Miguel A.
    Silva, Augusto
    Ramos, Isabel
    Loureiro, Joana
    [J]. FEDERATED CONFERENCE ON COMPUTER SCIENCE AND INFORMATION SYSTEMS, 2014, 2014, 2 : 209 - 217
  • [50] Improving the performance and interpretability on medical datasets using graphical ensemble feature selection
    Battistella, Enzo
    Ghiassian, Dina
    Barabasi, Albert-Laszlo
    [J]. BIOINFORMATICS, 2024, 40 (06)