Universal Detection of Backdoor Attacks via Density-Based Clustering and Centroids Analysis

被引:2
|
作者
Guo, Wei [1 ]
Tondi, Benedetta [1 ]
Barni, Mauro [1 ]
机构
[1] Univ Siena, Dept Informat Engn & Math, I-53100 Siena, Italy
关键词
Deep learning; backdoor attack; universal detection of backdoor attacks; density clustering; centroids analysis;
D O I
10.1109/TIFS.2023.3329426
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
We propose a Universal Defence against backdoor attacks based on Clustering and Centroids Analysis (CCA-UD). The goal of the defence is to reveal whether a Deep Neural Network model is subject to a backdoor attack by inspecting the training dataset. CCA-UD first clusters the samples of the training set by means of density-based clustering. Then, it applies a novel strategy to detect the presence of poisoned clusters. The proposed strategy is based on a general misclassification behaviour observed when the features of a representative example of the analysed cluster are added to benign samples. The capability of inducing a misclassification error is a general characteristic of poisoned samples, hence the proposed defence is attack-agnostic. This marks a significant difference with respect to existing defences, that, either can defend against only some types of backdoor attacks, or are effective only when some conditions on the poisoning ratio or the kind of triggering signal used by the attacker are satisfied. Experiments carried out on several classification tasks and network architectures, considering different types of backdoor attacks (with either clean or corrupted labels), and triggering signals, including both global and local triggering signals, as well as sample-specific and source-specific triggers, reveal that the proposed method is very effective to defend against backdoor attacks in all the cases, always outperforming the state of the art techniques.
引用
收藏
页码:970 / 984
页数:15
相关论文
共 50 条
  • [1] Universal Detection of Backdoor Attacks via Density-Based Clustering and Centroids Analysis
    Guo, Wei
    Tondi, Benedetta
    Barni, Mauro
    IEEE Transactions on Information Forensics and Security, 2024, 19 : 970 - 984
  • [2] Meteor shower detection with density-based clustering
    Sugar, Glenn
    Moorhead, Althea
    Brown, Peter
    Cooke, William
    METEORITICS & PLANETARY SCIENCE, 2017, 52 (06) : 1048 - 1059
  • [3] Unifying Density-Based Clustering and Outlier Detection
    Tao, Yunxin
    Pi, Dechang
    WKDD: 2009 SECOND INTERNATIONAL WORKSHOP ON KNOWLEDGE DISCOVERY AND DATA MINING, PROCEEDINGS, 2009, : 644 - 647
  • [4] A Conformalized Density-based Clustering Analysis of Malicious Traffic for Botnet Detection
    Kiani, Bahareh Mohammadi
    CONFORMAL AND PROBABILISTIC PREDICTION AND APPLICATIONS, VOL 128, 2020, 128 : 244 - 256
  • [5] Density-based clustering
    Campello, Ricardo J. G. B.
    Kroeger, Peer
    Sander, Jorg
    Zimek, Arthur
    WILEY INTERDISCIPLINARY REVIEWS-DATA MINING AND KNOWLEDGE DISCOVERY, 2020, 10 (02)
  • [6] Density-based clustering
    Kriegel, Hans-Peter
    Kroeger, Peer
    Sander, Joerg
    Zimek, Arthur
    WILEY INTERDISCIPLINARY REVIEWS-DATA MINING AND KNOWLEDGE DISCOVERY, 2011, 1 (03) : 231 - 240
  • [7] Density-based Clustering using Automatic Density Peak Detection
    Yan, Huanqian
    Lu, Yonggang
    Ma, Heng
    PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION APPLICATIONS AND METHODS (ICPRAM 2018), 2018, : 95 - 102
  • [8] Energy replenishment optimisation via density-based clustering
    Gu, Xin
    Peng, Jun
    Cheng, Yijun
    Zhang, Xiaoyong
    Liu, Kaiyang
    INTERNATIONAL JOURNAL OF COMPUTATIONAL SCIENCE AND ENGINEERING, 2020, 21 (02) : 271 - 280
  • [9] Community detection in complex networks by density-based clustering
    Jin, Hong
    Wang, Shuliang
    Li, Chenyang
    PHYSICA A-STATISTICAL MECHANICS AND ITS APPLICATIONS, 2013, 392 (19) : 4606 - 4618
  • [10] Multiscale PMU Data Compression via Density-Based WAMS Clustering Analysis
    Lee, Gyul
    Kim, Do-In
    Kim, Seon Hyeog
    Shin, Yong-June
    ENERGIES, 2019, 12 (04)