Exploring Public Data Vulnerabilities in Semi-Supervised Learning Models through Gray-box Adversarial Attack

被引:0
|
作者
Jo, Junhyung [1 ]
Kim, Joongsu [2 ]
Suh, Young-Joo [1 ]
机构
[1] Pohang Univ Sci & Technol, Grad Sch Artificial Intelligence, Pohang 37673, South Korea
[2] Pohang Univ Sci & Technol, Dept Comp Sci & Engn, Pohang 37673, South Korea
关键词
adversarial attack; gray-box attack; semi-supervised learning; deep neural networks;
D O I
10.3390/electronics13050940
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Semi-supervised learning (SSL) models, integrating labeled and unlabeled data, have gained prominence in vision-based tasks, yet their susceptibility to adversarial attacks remains underexplored. This paper unveils the vulnerability of SSL models to gray-box adversarial attacks-a scenario where the attacker has partial knowledge of the model. We introduce an efficient attack method, Gray-box Adversarial Attack on Semi-supervised learning (GAAS), which exploits the dependency of SSL models on publicly available labeled data. Our analysis demonstrates that even with limited knowledge, GAAS can significantly undermine the integrity of SSL models across various tasks, including image classification, object detection, and semantic segmentation, with minimal access to labeled data. Through extensive experiments, we exhibit the effectiveness of GAAS, comparing it to white-box attack scenarios and underscoring the critical need for robust defense mechanisms. Our findings highlight the potential risks of relying on public datasets for SSL model training and advocate for the integration of adversarial training and other defense strategies to safeguard against such vulnerabilities.
引用
收藏
页数:21
相关论文
共 35 条
  • [1] Gray-Box Shilling Attack: An Adversarial Learning Approach
    Wang, Zongwei
    Gao, Min
    Li, Jundong
    Zhang, Junwei
    Zhong, Jiang
    ACM TRANSACTIONS ON INTELLIGENT SYSTEMS AND TECHNOLOGY, 2022, 13 (05)
  • [2] Semi-supervised Active Learning for Semi-supervised Models: Exploit Adversarial Examples with Graph-based Virtual Labels
    Guo, Jiannan
    Shi, Haochen
    Kang, Yangyang
    Kuang, Kun
    Tang, Siliang
    Jiang, Zhuoren
    Sun, Changlong
    Wu, Fei
    Zhuang, Yueting
    2021 IEEE/CVF INTERNATIONAL CONFERENCE ON COMPUTER VISION (ICCV 2021), 2021, : 2876 - 2885
  • [3] SrPPG: Semi-Supervised Adversarial Learning for Remote Photoplethysmography with Noisy Data
    Hasan, Zahid
    Faridee, Abu Zaher Md
    Ahmed, Masud
    Ayyanar, Shibi
    Roy, Nirmalya
    2023 IEEE INTERNATIONAL CONFERENCE ON SMART COMPUTING, SMARTCOMP, 2023, : 25 - 32
  • [4] Image Captioning with Very Scarce Supervised Data: Adversarial Semi-Supervised Learning Approach
    Kim, Dong-Jin
    Choi, Jinsoo
    Oh, Tae-Hyun
    Kweon, In So
    2019 CONFERENCE ON EMPIRICAL METHODS IN NATURAL LANGUAGE PROCESSING AND THE 9TH INTERNATIONAL JOINT CONFERENCE ON NATURAL LANGUAGE PROCESSING (EMNLP-IJCNLP 2019): PROCEEDINGS OF THE CONFERENCE, 2019, : 2012 - 2023
  • [5] DeHiB: Deep Hidden Backdoor Attack on Semi-supervised Learning via Adversarial Perturbation
    Yan, Zhicong
    Li, Gaolei
    Tian, Yuan
    Wu, Jun
    Li, Shenghong
    Chen, Mingzhe
    Poor, H. Vincent
    THIRTY-FIFTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, THIRTY-THIRD CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE AND THE ELEVENTH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2021, 35 : 10585 - 10593
  • [6] Multimodal deep generative adversarial models for scalable doubly semi-supervised learning
    Du, Changde
    Du, Changying
    He, Huiguang
    INFORMATION FUSION, 2021, 68 : 118 - 130
  • [7] Improved Road Extraction Models through Semi-Supervised Learning with ACCT
    Yu, Hao
    Du, Shihong
    Tan, Zhenshan
    Zhang, Xiuyuan
    Li, Zhijiang
    ISPRS INTERNATIONAL JOURNAL OF GEO-INFORMATION, 2024, 13 (10)
  • [8] Semi-supervised Learning to Reduce Data Needs of Indoor Positioning Models
    Grzenda, Maciej
    INTELLIGENT DATA ENGINEERING AND AUTOMATED LEARNING (IDEAL 2018), PT II, 2018, 11315 : 233 - 240
  • [9] A Unified Framework for Data Poisoning Attack to Graph-based Semi-supervised Learning
    Liu, Xuanqing
    Si, Si
    Zhu, Xiaojin
    Li, Yang
    Hsieh, Cho-Jui
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 32 (NIPS 2019), 2019, 32
  • [10] AatMatch: Adaptive Adversarial Training in Semi-Supervised Learning Based on Data-Driven Decision-Making Models
    Li, Kuan
    Lian, Qianzhi
    Gao, Can
    Zhang, Fuyong
    SYSTEMS, 2023, 11 (05):