Adversarial Learning Games with Deep Learning Models

被引:0
|
作者
Chivukula, Aneesh Sreevallabh [1 ]
Liu, Wei [1 ]
机构
[1] Univ Technol Sydney, Adv Analyt Inst, Sydney, NSW, Australia
关键词
Supervised learning; Data mining and knowledge discovery; Evolutionary learning; Adversarial learning; Deep learning; Genetic algorithms; Game theory;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Deep learning has been found to be vulnerable to changes in the data distribution. This means that inputs that have an imperceptibly and immeasurably small difference from training data correspond to a completely different class label in deep learning. Thus an existing deep learning network like a Convolutional Neural Network (CNN) is vulnerable to adversarial examples. We design an adversarial learning algorithm for supervised learning in general and CNNs in particular. Adversarial examples are generated by a game theoretic formulation on the performance of deep learning. In the game, the interaction between an intelligent adversary and deep learning model is a two-person sequential noncooperative Stackelberg game with stochastic payoff functions. The Stackelberg game is solved by the Nash equilibrium which is a pair of strategies (learner weights and genetic operations) from which there is no incentive for either learner or adversary to deviate. The algorithm performance is evaluated under different strategy spaces on MNIST handwritten digits data. We show that the Nash equilibrium leads to solutions robust to subsequent adversarial data manipulations. Results suggest that game theory and stochastic optimization algorithms can be used to study performance vulnerabilities in deep learning models.
引用
收藏
页码:2758 / 2767
页数:10
相关论文
共 50 条
  • [41] Outcomes of Adversarial Attacks on Deep Learning Models for Ophthalmology Imaging Domains
    Yoo, Tae Keun
    Choi, Joon Yul
    JAMA OPHTHALMOLOGY, 2020, 138 (11) : 1213 - 1215
  • [42] Exploiting epistemic uncertainty of the deep learning models to generate adversarial samples
    Omer Faruk Tuna
    Ferhat Ozgur Catak
    M. Taner Eskil
    Multimedia Tools and Applications, 2022, 81 : 11479 - 11500
  • [43] Adversarial Robustness for Deep Learning-Based Wildfire Prediction Models
    Ide, Ryo
    Yang, Lei
    FIRE-SWITZERLAND, 2025, 8 (02):
  • [44] Using Generative Adversarial Nets on Atari Games for Feature Extraction in Deep Reinforcement Learning
    Aydin, Ayberk
    Surer, Elif
    2020 28TH SIGNAL PROCESSING AND COMMUNICATIONS APPLICATIONS CONFERENCE (SIU), 2020,
  • [45] Deep Reinforcement Learning and Games
    Zhao, Dongbin
    Lucas, Simon
    Togelius, Julian
    IEEE COMPUTATIONAL INTELLIGENCE MAGAZINE, 2019, 14 (03) : 7 - 7
  • [46] Feature-Based Adversarial Training for Deep Learning Models Resistant to Transferable Adversarial Examples
    Ryu, Gwonsang
    Choi, Daeseon
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2022, E105D (05) : 1039 - 1049
  • [47] Robustness of on-device Models: Adversarial Attack to Deep Learning Models on Android Apps
    Huang, Yujin
    Hu, Han
    Chen, Chunyang
    2021 IEEE/ACM 43RD INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING: SOFTWARE ENGINEERING IN PRACTICE (ICSE-SEIP 2021), 2021, : 101 - 110
  • [48] Generalized Wireless Adversarial Deep Learning
    Restuccia, Francesco
    D'Oro, Salvatore
    Al-Shawabka, Amani
    Rendon, Bruno Costa
    Chowdhury, Kaushik
    Ioannidis, Stratis
    Melodia, Tommaso
    PROCEEDINGS OF THE 2ND ACM WORKSHOP ON WIRELESS SECURITY AND MACHINE LEARNING, WISEML 2020, 2020, : 49 - 54
  • [49] Generalized Wireless Adversarial Deep Learning
    Restuccia, Francesco
    D'Oro, Salvatore
    Al-Shawabka, Amani
    Rendon, Bruno Costa
    Chowdhury, Kaushik
    Ioannidis, Stratis
    Melodia, Tommaso
    COMPUTER NETWORKS, 2022, 216
  • [50] Coevolutionary Computation for Adversarial Deep Learning
    Toutouh, Jamal
    O'Reilly, Una-May
    PROCEEDINGS OF THE 2023 GENETIC AND EVOLUTIONARY COMPUTATION CONFERENCE COMPANION, GECCO 2023 COMPANION, 2023, : 1379 - 1398