Backdooring Convolutional Neural Networks via TargetedWeight Perturbations

被引:0
|
作者
Dumford, Jacob [1 ]
Scheirer, Walter [1 ]
机构
[1] Univ Notre Dame, Notre Dame, IN 46556 USA
来源
IEEE/IAPR INTERNATIONAL JOINT CONFERENCE ON BIOMETRICS (IJCB 2020) | 2020年
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
We present a new white-box backdoor attack that exploits a vulnerability of convolutional neural networks (CNNs). In particular, we examine the application of facial recognition. Deep learning techniques are at the top of the game for facial recognition, which means they have now been implemented in many production-level systems. Alarmingly, unlike other commercial technologies such as operating systems and network devices, deep learning-based facial recognition algorithms are not presently designed with security requirements or audited for security vulnerabilities before deployment. Given how young the technology is and how abstract many of the internal workings of these algorithms are, neural network-based facial recognition systems are prime targets for security breaches. As more and more of our personal information begins to be guarded by facial recognition (e.g., the iPhone X), exploring the security vulnerabilities of these systems from a penetration testing standpoint is crucial. Along these lines, we describe a general methodology for backdooring CNNs via targeted weight perturbations. Using a five-layer CNN and ResNet-50 as case studies, we show that an attacker is able to significantly increase the chance that inputs they supply will be falsely accepted by a CNN while simultaneously preserving the error rates for legitimate enrolled classes.
引用
收藏
页数:9
相关论文
共 50 条
  • [31] Interpretable convolutional neural networks via feedforward design
    Kuo, C-C. Jay
    Zhang, Min
    Li, Siyang
    Duan, Jiali
    Chen, Yueru
    JOURNAL OF VISUAL COMMUNICATION AND IMAGE REPRESENTATION, 2019, 60 : 346 - 359
  • [32] Fine-Pruning: Defending Against Backdooring Attacks on Deep Neural Networks
    Liu, Kang
    Dolan-Gavitt, Brendan
    Garg, Siddharth
    RESEARCH IN ATTACKS, INTRUSIONS, AND DEFENSES, RAID 2018, 2018, 11050 : 273 - 294
  • [33] A multitarget backdooring attack on deep neural networks with random location trigger
    Xiao, Yu
    Cong, Liu
    Mingwen, Zheng
    Yajie, Wang
    Xinrui, Liu
    Shuxiao, Song
    Yuexuan, Ma
    Jun, Zheng
    INTERNATIONAL JOURNAL OF INTELLIGENT SYSTEMS, 2022, 37 (03) : 2567 - 2583
  • [34] Backdooring Neural Code Search
    Sun, Weisong
    Chen, Yuchen
    Tao, Guanhong
    Fang, Chunrong
    Zhang, Xiangyu
    Zhang, Quanjun
    Luo, Bin
    PROCEEDINGS OF THE 61ST ANNUAL MEETING OF THE ASSOCIATION FOR COMPUTATIONAL LINGUISTICS (ACL 2023): LONG PAPERS, VOL 1, 2023, : 9692 - 9708
  • [35] Accelerating Convolutional Neural Networks via Activation Map Compression
    Georgiadis, Georgios
    2019 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2019), 2019, : 7078 - 7088
  • [36] Bayesian Graph Convolutional Neural Networks via Tempered MCMC
    Chandra, Rohitash
    Bhagat, Ayush
    Maharana, Manavendra
    Krivitsky, Pavel N.
    IEEE ACCESS, 2021, 9 : 130353 - 130365
  • [37] Classification of Cancer Microscopic Images via Convolutional Neural Networks
    Khan, Mohammad Azam
    Choo, Jaegul
    ISBI 2019 C-NMC CHALLENGE: CLASSIFICATION IN CANCER CELL IMAGING, 2019, : 141 - 147
  • [38] Dataset Refinement for Convolutional Neural Networks via Active Learning
    Liu, Siwen
    Zhu, Rong
    Luo, Yimin
    Wang, Zhongyuan
    Zhou, Liguo
    ADVANCES IN MULTIMEDIA INFORMATION PROCESSING, PT III, 2018, 11166 : 565 - 574
  • [39] Sentiment Prediction in Scene Images via Convolutional Neural Networks
    Yao, Junfeng
    Yu, Yao
    Xue, Xiaoling
    2016 31ST YOUTH ACADEMIC ANNUAL CONFERENCE OF CHINESE ASSOCIATION OF AUTOMATION (YAC), 2016, : 196 - 200
  • [40] Pansharpening via Detail Injection Based Convolutional Neural Networks
    He, Lin
    Rao, Yizhou
    Li, Jun
    Chanussot, Jocelyn
    Plaza, Antonio
    Zhu, Jiawei
    Li, Bo
    IEEE JOURNAL OF SELECTED TOPICS IN APPLIED EARTH OBSERVATIONS AND REMOTE SENSING, 2019, 12 (04) : 1188 - 1204