资源论文ROBUST ANOMALY DETECTION AND BACKDOOR AT-TACK DETECTION VIA DIFFERENTIAL PRIVACY

ROBUST ANOMALY DETECTION AND BACKDOOR AT-TACK DETECTION VIA DIFFERENTIAL PRIVACY

2020-01-02 | |  65 |   32 |   0

Abstract

Outlier detection and novelty detection are two important topics for anomaly detection. Suppose the majority of a dataset are drawn from a certain distribution, outlier detection and novelty detection both aim to detect data samples that do not fit the distribution. Outliers refer to data samples within this dataset, while novelties refer to new samples. In the meantime, backdoor poisoning attacks for machine learning models are achieved through injecting poisoning samples into the training dataset, which could be regarded as “outliers” that are intentionally added by attackers. Differential privacy has been proposed to avoid leaking any individual’s information, when aggregated analysis is performed on a given dataset. It is typically achieved by adding random noise, either directly to the input dataset, or to intermediate results of the aggregation mechanism. In this paper, we demonstrate that applying differential privacy could improve the utility of outlier detection and novelty detection, with an extension to detect poisoning samples in backdoor attacks. We first present a theoretical analysis on how differential privacy helps with the detection, and then conduct extensive experiments to validate the effectiveness of differential privacy in improving outlier detection, novelty detection, and backdoor attack detection.

上一篇:PROGRESSIVE MEMORY BANKS FOR INCREMENTALD OMAIN ADAPTATION

下一篇:DEEP 3D PAN VIA ADAPTIVE “T- SHAPED ”CONVO -LUTIONS WITH GLOBAL AND LOCAL ADAPTIVE DILA -TIONS

用户评价
全部评价

热门资源

  • The Variational S...

    Unlike traditional images which do not offer in...

  • Learning to Predi...

    Much of model-based reinforcement learning invo...

  • Stratified Strate...

    In this paper we introduce Stratified Strategy ...

  • A Mathematical Mo...

    Direct democracy, where each voter casts one vo...

  • Joint Pose and Ex...

    Facial expression recognition (FER) is a challe...