Defense strategies for Adversarial Machine Learning: A survey

被引:5
|
作者
Bountakas, Panagiotis [1 ]
Zarras, Apostolis [1 ]
Lekidis, Alexios [1 ]
Xenakis, Christos [1 ]
机构
[1] Univ Piraeus, Dept Digital Syst, 80 Karaoli & Dimitriou, Piraeus 18534, Attica, Greece
基金
欧盟地平线“2020”;
关键词
Survey; Machine Learning; Adversarial Machine Learning; Defense methods; Computer vision; Cybersecurity; Natural Language Processing; Audio; DETECTION SYSTEMS; ATTACKS; INTRUSION; ROBUST; CLASSIFICATION; SECURITY;
D O I
10.1016/j.cosrev.2023.100573
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Adversarial Machine Learning (AML) is a recently introduced technique, aiming to deceive Machine Learning (ML) models by providing falsified inputs to render those models ineffective. Consequently, most researchers focus on detecting new AML attacks that can undermine existing ML infrastructures, overlooking at the same time the significance of defense strategies. This article constitutes a survey of the existing literature on AML attacks and defenses with a special focus on a taxonomy of recent works on AML defense techniques for different application domains, such as audio, cyber-security, NLP, and computer vision. The proposed survey also explores the methodology of the defense solutions and compares them using several criteria, such as whether they are attack- and/or domain-agnostic, deploy appropriate AML evaluation metrics, and whether they share their source code and/or their evaluation datasets. To the best of our knowledge, this article constitutes the first survey that seeks to systematize the existing knowledge focusing solely on the defense solutions against AML and providing innovative directions for future research on tackling the increasing threat of AML. & COPY; 2023 Elsevier Inc. All rights reserved.
引用
收藏
页数:20
相关论文
共 50 条
  • [41] Adversarial machine learning in dermatology
    Gilmore, Stephen
    [J]. AUSTRALASIAN JOURNAL OF DERMATOLOGY, 2022, 63 : 118 - 118
  • [42] Adversarial Attacks in Explainable Machine Learning: A Survey of Threats Against Models and Humans
    Vadillo, Jon
    Santana, Roberto
    Lozano, Jose A.
    [J]. Wiley Interdisciplinary Reviews: Data Mining and Knowledge Discovery, 2025, 15 (01)
  • [43] Adversarial Machine Learning in Image Classification: A Survey Toward the Defender's Perspective
    Machado, Gabriel Resende
    Silva, Eugenio
    Goldschmidt, Ronaldo Ribeiro
    [J]. ACM COMPUTING SURVEYS, 2023, 55 (01)
  • [44] Apollon: A robust defense system against Adversarial Machine Learning attacks in Intrusion Detection Systems
    Paya, Antonio
    Arroni, Sergio
    Garcia-Diaz, Vicente
    Gomez, Alberto
    [J]. COMPUTERS & SECURITY, 2024, 136
  • [45] Robust Malware Defense in Industrial IoT Applications Using Machine Learning With Selective Adversarial Samples
    Khoda, Mahbub E.
    Imam, Tasadduq
    Kamruzzaman, Joarder
    Gondal, Iqbal
    Rahman, Ashfaqur
    [J]. IEEE TRANSACTIONS ON INDUSTRY APPLICATIONS, 2020, 56 (04) : 4415 - 4424
  • [46] Advocating for Multiple Defense Strategies Against Adversarial Examples
    Araujo, Alexandre
    Meunier, Laurent
    Pinot, Rafael
    Negrevergne, Benjamin
    [J]. ECML PKDD 2020 WORKSHOPS, 2020, 1323 : 165 - 177
  • [47] A survey on machine learning in Internet of Things: Algorithms, strategies, and applications
    Messaoud, Seifeddine
    Bradai, Abbas
    Bukhari, Syed Hashim Raza
    Quang, Pham Tran Anh
    Ben Ahmed, Olfa
    Atri, Mohamed
    [J]. INTERNET OF THINGS, 2020, 12
  • [48] Learning defense transformations for counterattacking adversarial examples
    Li, Jincheng
    Zhang, Shuhai
    Cao, Jiezhang
    Tan, Mingkui
    [J]. NEURAL NETWORKS, 2023, 164 : 177 - 185
  • [49] Defense Against Adversarial Attacks in Deep Learning
    Li, Yuancheng
    Wang, Yimeng
    [J]. APPLIED SCIENCES-BASEL, 2019, 9 (01):
  • [50] Deeply Supervised Discriminative Learning for Adversarial Defense
    Mustafa, Aamir
    Khan, Salman H.
    Hayat, Munawar
    Goecke, Roland
    Shen, Jianbing
    Shao, Ling
    [J]. IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2021, 43 (09) : 3154 - 3166