Jangseung: A Guardian for Machine Learning Algorithms to Protect Against Poisoning Attacks

被引:1
|
作者
Wolf, Shaya [1 ]
Gamboa, Woodrow [2 ]
Borowczak, Mike [1 ]
机构
[1] Univ Wyoming, Comp Sci Dept, Laramie, WY 82071 USA
[2] Stanford Univ, Comp Sci Dept, Stanford, CA 94305 USA
关键词
Adversarial Perturbations; Poisoning Defense; Smart City Applications;
D O I
10.1109/ISC253183.2021.9562816
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Many smart city applications rely on machine learning; however, adversarial perturbations can be injected into training data to cause models to return skewed results. Jangseung is a preprocessor limits the effects of poisoning attacks without impeding on accuracy. Jangseung was created to guard support vector machines from poisoned data by utilizing anomaly detection algorithms. The preprocessor was tested through experiments that utilized two different datasets, the MNIST dataset and the UCI breast cancer Wisconsin (diagnostic) dataset. With both datasets, two identical models were trained and then attacked using the same adversarial points, one with Jangseung protecting it and the other unguarded from attack. In all cases, the protected model out-performed the unprotected model and in the best case scenario, the Jangseung-protected model outperformed the unguarded model by 96.2%. The under-trained, undefended MNIST models had an average accuracy of 53.2%. When Jangseung was present, their identical counterparts had a drastically higher average accuracy at 91.1%. Likewise, in the UCI-Cancer dataset, attack sequences lowered the accuracy of the model to as low as 75.51%, but Jangseung-defended models performed with 88.18% accuracy or better. Jangseung was an effective defense against adversarial perturbations for SVMs using different datasets and anomaly detection algorithms.
引用
收藏
页数:7
相关论文
共 50 条
  • [31] Machine learning algorithms to detect DDoS attacks in SDN
    Santos, Reneilson
    Souza, Danilo
    Santo, Walter
    Ribeiro, Admilson
    Moreno, Edward
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2020, 32 (16):
  • [32] Detection of Slowloris Attacks using Machine Learning Algorithms
    Rios, Vinicius de Miranda
    Inacio, Pedro R. M.
    Magoni, Damien
    Freire, Mario M.
    39TH ANNUAL ACM SYMPOSIUM ON APPLIED COMPUTING, SAC 2024, 2024, : 1321 - 1330
  • [33] Classification of SSH Attacks using Machine Learning Algorithms
    Sadasivam, Gokul Kannan
    Hota, Chittaranjan
    Anand, Bhojan
    2016 6TH INTERNATIONAL CONFERENCE ON IT CONVERGENCE AND SECURITY (ICITCS 2016), 2016, : 260 - 265
  • [34] Detection of DDoS Attacks using Machine Learning Algorithms
    Saini, Parvinder Singh
    Behal, Sunny
    Bhatia, Sajal
    PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON COMPUTING FOR SUSTAINABLE GLOBAL DEVELOPMENT (INDIACOM-2020), 2019, : 16 - 21
  • [35] Evaluating Machine Learning Algorithms for Detecting DDoS Attacks
    Suresh, Manjula
    Anitha, R.
    ADVANCES IN NETWORK SECURITY AND APPLICATIONS, 2011, 196 : 441 - 452
  • [36] DDoS Attacks Detection Using Machine Learning Algorithms
    Li, Qian
    Meng, Linhai
    Zhang, Yuan
    Yan, Jinyao
    DIGITAL TV AND MULTIMEDIA COMMUNICATION, 2019, 1009 : 205 - 216
  • [37] Secure and verifiable federated learning against poisoning attacks in IoMT
    Niu, Shufen
    Zhou, Xusheng
    Wang, Ning
    Kong, Weiying
    Chen, Lihua
    COMPUTERS & ELECTRICAL ENGINEERING, 2025, 122
  • [38] Data Poisoning Attacks With Hybrid Particle Swarm Optimization Algorithms Against Federated Learning in Connected and Autonomous Vehicles
    Cui, Chi
    Du, Haiping
    Jia, Zhijuan
    Zhang, Xiaofei
    He, Yuchu
    Yang, Yanyan
    IEEE ACCESS, 2023, 11 : 136361 - 136369
  • [39] Adversarial data poisoning attacks against the PC learning algorithm
    Alsuwat, Emad
    Alsuwat, Hatim
    Valtorta, Marco
    Farkas, Csilla
    INTERNATIONAL JOURNAL OF GENERAL SYSTEMS, 2020, 49 (01) : 3 - 31
  • [40] Federated Learning: A Comparative Study of Defenses Against Poisoning Attacks
    Carvalho, Ines
    Huff, Kenton
    Gruenwald, Le
    Bernardino, Jorge
    APPLIED SCIENCES-BASEL, 2024, 14 (22):