Universal Detection of Backdoor Attacks via Density-Based Clustering and Centroids Analysis

被引:2
|
作者
Guo, Wei [1 ]
Tondi, Benedetta [1 ]
Barni, Mauro [1 ]
机构
[1] Univ Siena, Dept Informat Engn & Math, I-53100 Siena, Italy
关键词
Deep learning; backdoor attack; universal detection of backdoor attacks; density clustering; centroids analysis;
D O I
10.1109/TIFS.2023.3329426
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
We propose a Universal Defence against backdoor attacks based on Clustering and Centroids Analysis (CCA-UD). The goal of the defence is to reveal whether a Deep Neural Network model is subject to a backdoor attack by inspecting the training dataset. CCA-UD first clusters the samples of the training set by means of density-based clustering. Then, it applies a novel strategy to detect the presence of poisoned clusters. The proposed strategy is based on a general misclassification behaviour observed when the features of a representative example of the analysed cluster are added to benign samples. The capability of inducing a misclassification error is a general characteristic of poisoned samples, hence the proposed defence is attack-agnostic. This marks a significant difference with respect to existing defences, that, either can defend against only some types of backdoor attacks, or are effective only when some conditions on the poisoning ratio or the kind of triggering signal used by the attacker are satisfied. Experiments carried out on several classification tasks and network architectures, considering different types of backdoor attacks (with either clean or corrupted labels), and triggering signals, including both global and local triggering signals, as well as sample-specific and source-specific triggers, reveal that the proposed method is very effective to defend against backdoor attacks in all the cases, always outperforming the state of the art techniques.
引用
收藏
页码:970 / 984
页数:15
相关论文
共 50 条
  • [11] Density-Based Clustering of Polygons
    Joshi, Deepti
    Samal, Ashok K.
    Soh, Leen-Kiat
    2009 IEEE SYMPOSIUM ON COMPUTATIONAL INTELLIGENCE AND DATA MINING, 2009, : 171 - 178
  • [12] Density-Based Clustering with Constraints
    Lasek, Piotr
    Gryz, Jarek
    COMPUTER SCIENCE AND INFORMATION SYSTEMS, 2019, 16 (02) : 469 - 489
  • [13] Directional density-based clustering
    Saavedra-Nieves, Paula
    Fernandez-Perez, Martin
    ADVANCES IN DATA ANALYSIS AND CLASSIFICATION, 2024,
  • [14] Active Density-Based Clustering
    Mai, Son T.
    He, Xiao
    Hubig, Nina
    Plant, Claudia
    Boehm, Christian
    2013 IEEE 13TH INTERNATIONAL CONFERENCE ON DATA MINING (ICDM), 2013, : 508 - 517
  • [15] Fast Parameterless Density-Based Clustering via Random Projections
    Schneider, Johannes
    Vlachos, Michail
    PROCEEDINGS OF THE 22ND ACM INTERNATIONAL CONFERENCE ON INFORMATION & KNOWLEDGE MANAGEMENT (CIKM'13), 2013, : 861 - 866
  • [16] Stability of Density-Based Clustering
    Rinaldo, Alessandro
    Singh, Aarti
    Nugent, Rebecca
    Wasserman, Larry
    JOURNAL OF MACHINE LEARNING RESEARCH, 2012, 13 : 905 - 948
  • [17] Stable and Consistent Density-Based Clustering via Multiparameter Persistence
    Rolle, Alexander
    Scoccola, Luis
    JOURNAL OF MACHINE LEARNING RESEARCH, 2024, 25
  • [18] Applying Density-based Clustering for Bloodstain Pattern Analysis
    Acampora, Giovanni
    Di Nunzio, Ciro
    Garofano, Luciano
    Saliva, Maurizio
    Vitiello, Autilia
    2021 IEEE INTERNATIONAL CONFERENCE ON SYSTEMS, MAN, AND CYBERNETICS (SMC), 2021, : 28 - 33
  • [19] A density-based clustering algorithm for the CYGNO data analysis
    Baracchini, E.
    Benussi, L.
    Bianco, S.
    Capoccia, C.
    Caponero, M.
    Cavoto, G.
    Cortez, A.
    Costa, I. A.
    Di Marco, E.
    D'Imperio, G.
    Dho, G.
    Lacoangeli, F.
    Maccarrone, G.
    Marafini, M.
    Mazzitelli, G.
    Messina, A.
    Nobrega, R. A.
    Orlandi, A.
    Paoletti, E.
    Passamonti, L.
    Petrucci, F.
    Piccolo, D.
    Pierluigi, D.
    Pinci, D.
    Renga, F.
    Rosatelli, F.
    Russo, A.
    Saviano, G.
    Tesauroc, R.
    Tomassini, S.
    JOURNAL OF INSTRUMENTATION, 2020, 15 (12)
  • [20] Nonparametric Density-Based Clustering for Cardiac Arrhythmia Analysis
    Rodriguez-Sotelo, J. L.
    Peluffo-Ordonez, D.
    Cuesta-Frau, D.
    Castellanos-Dominguez, G.
    CINC: 2009 36TH ANNUAL COMPUTERS IN CARDIOLOGY CONFERENCE, 2009, 36 : 569 - +