Backdoor Attack and Defense for Deep Regression

09/06/2021
by   Xi Li, et al.
0

We demonstrate a backdoor attack on a deep neural network used for regression. The backdoor attack is localized based on training-set data poisoning wherein the mislabeled samples are surrounded by correctly labeled ones. We demonstrate how such localization is necessary for attack success. We also study the performance of a backdoor defense using gradient-based discovery of local error maximizers. Local error maximizers which are associated with significant (interpolation) error, and are proximal to many training samples, are suspicious. This method is also used to accurately train for deep regression in the first place by active (deep) learning leveraging an "oracle" capable of providing real-valued supervision (a regression target) for samples. Such oracles, including traditional numerical solvers of PDEs or SDEs using finite difference or Monte Carlo approximations, are far more computationally costly compared to deep regression.

READ FULL TEXT
research
07/28/2021

Robust and Active Learning for Deep Neural Network Regression

We describe a gradient-based method to discover local error maximizers o...
research
01/06/2021

DeepPoison: Feature Transfer Based Stealthy Poisoning Attack

Deep neural networks are susceptible to poisoning attacks by purposely p...
research
06/29/2020

Deep Ordinal Regression with Label Diversity

Regression via classification (RvC) is a common method used for regressi...
research
02/14/2021

Multi-Level Fine-Tuning: Closing Generalization Gaps in Approximation of Solution Maps under a Limited Budget for Training Data

In scientific machine learning, regression networks have been recently a...
research
01/25/2021

Few-Shot Website Fingerprinting Attack

This work introduces a novel data augmentation method for few-shot websi...
research
08/25/2021

Measurement of Hybrid Rocket Solid Fuel Regression Rate for a Slab Burner using Deep Learning

This study presents an imaging-based deep learning tool to measure the f...
research
06/15/2022

Priori Error Estimate of Deep Mixed Residual Method for Elliptic PDEs

In this work, we derive a priori error estimate of the mixed residual me...

Please sign up or login with your details

Forgot password? Click here to reset