Input-Aware Dynamic Backdoor Attack

被引:0
|
作者
Nguyen, Tuan Anh [1 ,2 ]
Tran, Tuan Anh [1 ,3 ]
机构
[1] VinAI Res, Hanoi, Vietnam
[2] Hanoi Univ Sci & Technol, Hanoi, Vietnam
[3] VinUniv, Hanoi, Vietnam
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
In recent years, neural backdoor attack has been considered to be a potential security threat to deep learning systems. Such systems, while achieving the state-of-the-art performance on clean data, perform abnormally on inputs with predefined triggers. Current backdoor techniques, however, rely on uniform trigger patterns, which are easily detected and mitigated by current defense methods. In this work, we propose a novel backdoor attack technique in which the triggers vary from input to input. To achieve this goal, we implement an input-aware trigger generator driven by diversity loss. A novel cross-trigger test is applied to enforce trigger nonreusablity, making backdoor verification impossible. Experiments show that our method is efficient in various attack scenarios as well as multiple datasets. We further demonstrate that our backdoor can bypass the state of the art defense methods. An analysis with a famous neural network inspector again proves the stealthiness of the proposed attack. Our code is publicly available.
引用
收藏
页数:11
相关论文
共 50 条
  • [21] QLUT: Input-Aware Quantized Table Lookup for Energy-Efficient Approximate Accelerators
    Raha, Arnab
    Raghunathan, Vijay
    ACM TRANSACTIONS ON EMBEDDED COMPUTING SYSTEMS, 2017, 16
  • [22] Input-Aware Implication Selection Scheme Utilizing ATPG for Efficient Concurrent Error Detection
    Hassan, Abdus Sami
    Afzaal, Umar
    Arifeen, Tooba
    Lee, Jeong A.
    ELECTRONICS, 2018, 7 (10)
  • [23] Efficient Context-Aware Neural Machine Translation with Layer-Wise Weighting and Input-Aware Gating
    Xu, Hongfei
    Xiong, Deyi
    van Genabith, Josef
    Liu, Qiuhui
    PROCEEDINGS OF THE TWENTY-NINTH INTERNATIONAL JOINT CONFERENCE ON ARTIFICIAL INTELLIGENCE, 2020, : 3933 - 3940
  • [24] Input-Aware Statistical Timing Analysis-Based Delay Test Pattern Generation
    Liu, Bao
    Wang, Lu
    PROCEEDINGS OF THE FOURTEENTH INTERNATIONAL SYMPOSIUM ON QUALITY ELECTRONIC DESIGN (ISQED 2013), 2013, : 454 - 459
  • [25] Input-Aware Flow-Based Computing on Memristor Crossbars With Applications to Edge Detection
    Chakraborty, Dwaipayan
    Raj, Sunny
    Fernandes, Steven Lawrence
    Jha, Sumit Kumar
    IEEE JOURNAL ON EMERGING AND SELECTED TOPICS IN CIRCUITS AND SYSTEMS, 2019, 9 (03) : 580 - 591
  • [26] KerbNet : A QoE-Aware Kernel-Based Backdoor Attack Framework
    Gong, Xueluan
    Chen, Yanjiao
    Huang, Huayang
    Kong, Weihan
    Wang, Ziyao
    Shen, Chao
    Wang, Qian
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (04) : 1605 - 1620
  • [27] IATF: An Input-Aware Tuning Framework for Compact BLAS Based on ARMv8 CPUs
    Wei, Cunyang
    Jia, Haipeng
    Zhang, Yunquan
    Xu, Liusha
    Qi, Ji
    51ST INTERNATIONAL CONFERENCE ON PARALLEL PROCESSING, ICPP 2022, 2022,
  • [28] IrGEMM: An Input-Aware Tuning Framework for Irregular GEMM on ARM and X86 CPUs
    Wei, Cunyang
    Jia, Haipeng
    Zhang, Yunquan
    Yao, Jianyu
    Li, Chendi
    Cao, Wenxuan
    IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2024, 35 (09) : 1672 - 1689
  • [29] Debiasing backdoor attack: A benign application of backdoor attack in eliminating data bias
    Wu, Shangxi
    He, Qiuyang
    Zhang, Yi
    Lu, Dongyuan
    Sang, Jitao
    INFORMATION SCIENCES, 2023, 643
  • [30] Stand-in Backdoor: A Stealthy and Powerful Backdoor Attack
    Li, Shuang
    Li, Hongwei
    Chen, Hanxiao
    2021 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2021,