Universal Detection of Backdoor Attacks via Density-Based Clustering and Centroids Analysis

被引:2
|
作者
Guo, Wei [1 ]
Tondi, Benedetta [1 ]
Barni, Mauro [1 ]
机构
[1] Univ Siena, Dept Informat Engn & Math, I-53100 Siena, Italy
关键词
Deep learning; backdoor attack; universal detection of backdoor attacks; density clustering; centroids analysis;
D O I
10.1109/TIFS.2023.3329426
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
We propose a Universal Defence against backdoor attacks based on Clustering and Centroids Analysis (CCA-UD). The goal of the defence is to reveal whether a Deep Neural Network model is subject to a backdoor attack by inspecting the training dataset. CCA-UD first clusters the samples of the training set by means of density-based clustering. Then, it applies a novel strategy to detect the presence of poisoned clusters. The proposed strategy is based on a general misclassification behaviour observed when the features of a representative example of the analysed cluster are added to benign samples. The capability of inducing a misclassification error is a general characteristic of poisoned samples, hence the proposed defence is attack-agnostic. This marks a significant difference with respect to existing defences, that, either can defend against only some types of backdoor attacks, or are effective only when some conditions on the poisoning ratio or the kind of triggering signal used by the attacker are satisfied. Experiments carried out on several classification tasks and network architectures, considering different types of backdoor attacks (with either clean or corrupted labels), and triggering signals, including both global and local triggering signals, as well as sample-specific and source-specific triggers, reveal that the proposed method is very effective to defend against backdoor attacks in all the cases, always outperforming the state of the art techniques.
引用
收藏
页码:970 / 984
页数:15
相关论文
共 50 条
  • [21] Automatic Density-Based Clustering for Operational Modal Analysis
    Bhusal, Upama
    Tezcan, Jale
    NATURAL HAZARDS REVIEW, 2025, 26 (02)
  • [22] Density-based clustering for road accident data analysis
    Alotaibi, Abdullah S.
    INTERNATIONAL JOURNAL OF ADVANCED AND APPLIED SCIENCES, 2018, 5 (08): : 113 - 121
  • [23] Density-based clustering in haplotype analysis for association mapping
    Robert P Igo
    Douglas Londono
    Katherine Miller
    Antonio R Parrado
    Shannon RE Quade
    Moumita Sinha
    Sulgi Kim
    Sungho Won
    Jing Li
    Katrina AB Goddard
    BMC Proceedings, 1 (Suppl 1)
  • [24] Fuzzy Density Based Clustering with Generalized Centroids
    Braune, Christian
    Kruse, Rudolf
    PROCEEDINGS OF 2016 IEEE SYMPOSIUM SERIES ON COMPUTATIONAL INTELLIGENCE (SSCI), 2016,
  • [25] Enhancing density-based clustering: Parameter reduction and outlier detection
    Cassisi, Carmelo
    Ferro, Alfredo
    Giugno, Rosalba
    Pigola, Giuseppe
    Pulvirenti, Alfredo
    INFORMATION SYSTEMS, 2013, 38 (03) : 317 - 330
  • [26] A Density-based Clustering Model for Community Detection in Complex Networks
    Zhao, Xiang
    Li, Yantao
    Qu, Zehui
    ADVANCES IN MATERIALS, MACHINERY, ELECTRONICS II, 2018, 1955
  • [27] Density-based link clustering algorithm for overlapping community detection
    Zhu, M. (zhumubest@163.com), 1600, Science Press (50):
  • [28] Hyperspectral Anomaly Detection via Convolutional Neural Network and Low Rank With Density-Based Clustering
    Song, Shangzhen
    Zhou, Huixin
    Yang, Yixin
    Song, Jiangluqi
    IEEE JOURNAL OF SELECTED TOPICS IN APPLIED EARTH OBSERVATIONS AND REMOTE SENSING, 2019, 12 (09) : 3637 - 3649
  • [29] Generalizing Local Density for Density-Based Clustering
    Lin, Jun-Lin
    SYMMETRY-BASEL, 2021, 13 (02): : 1 - 24
  • [30] Density-Based Clustering for Adaptive Density Variation
    Qian, Li
    Plant, Claudia
    Boehm, Christian
    2021 21ST IEEE INTERNATIONAL CONFERENCE ON DATA MINING (ICDM 2021), 2021, : 1282 - 1287