Matches in SemOpenAlex for { <https://semopenalex.org/work/W2796004214> ?p ?o ?g. }
- W2796004214 abstract "Data poisoning is an attack on machine learning models wherein the attacker adds examples to the training set to manipulate the behavior of the model at test time. This paper explores poisoning attacks on neural nets. The proposed attacks use clean-labels; they don't require the attacker to have any control over the labeling of training data. They are also targeted; they control the behavior of the classifier on a $textit{specific}$ test instance without degrading overall classifier performance. For example, an attacker could add a seemingly innocuous image (that is properly labeled) to a training set for a face recognition engine, and control the identity of a chosen person at test time. Because the attacker does not need to control the labeling function, poisons could be entered into the training set simply by leaving them on the web and waiting for them to be scraped by a data collection bot. We present an optimization-based method for crafting poisons, and show that just one single poison image can control classifier behavior when transfer learning is used. For full end-to-end training, we present a watermarking strategy that makes poisoning reliable using multiple ($approx$50) poisoned training instances. We demonstrate our method by generating poisoned frog images from the CIFAR dataset and using them to manipulate image classifiers." @default.
- W2796004214 created "2018-04-13" @default.
- W2796004214 creator A5009839197 @default.
- W2796004214 creator A5021900923 @default.
- W2796004214 creator A5033093547 @default.
- W2796004214 creator A5033409139 @default.
- W2796004214 creator A5060687985 @default.
- W2796004214 creator A5083617223 @default.
- W2796004214 creator A5085240167 @default.
- W2796004214 date "2018-04-03" @default.
- W2796004214 modified "2023-10-08" @default.
- W2796004214 title "Poison Frogs! Targeted Clean-Label Poisoning Attacks on Neural Networks" @default.
- W2796004214 cites W1871489475 @default.
- W2796004214 cites W2117539524 @default.
- W2796004214 cites W2125908420 @default.
- W2796004214 cites W2162552722 @default.
- W2796004214 cites W2419492953 @default.
- W2796004214 cites W2535873859 @default.
- W2796004214 cites W2591602089 @default.
- W2796004214 cites W2626801932 @default.
- W2796004214 cites W2748789698 @default.
- W2796004214 cites W2753783305 @default.
- W2796004214 cites W2765913967 @default.
- W2796004214 cites W2767734359 @default.
- W2796004214 cites W2774423163 @default.
- W2796004214 cites W2793931959 @default.
- W2796004214 cites W2949506549 @default.
- W2796004214 cites W2949650786 @default.
- W2796004214 cites W2949780682 @default.
- W2796004214 cites W2950179405 @default.
- W2796004214 cites W2963207607 @default.
- W2796004214 cites W2964153729 @default.
- W2796004214 cites W3118608800 @default.
- W2796004214 hasPublicationYear "2018" @default.
- W2796004214 type Work @default.
- W2796004214 sameAs 2796004214 @default.
- W2796004214 citedByCount "52" @default.
- W2796004214 countsByYear W27960042142018 @default.
- W2796004214 countsByYear W27960042142019 @default.
- W2796004214 countsByYear W27960042142020 @default.
- W2796004214 countsByYear W27960042142021 @default.
- W2796004214 countsByYear W27960042142022 @default.
- W2796004214 crossrefType "posted-content" @default.
- W2796004214 hasAuthorship W2796004214A5009839197 @default.
- W2796004214 hasAuthorship W2796004214A5021900923 @default.
- W2796004214 hasAuthorship W2796004214A5033093547 @default.
- W2796004214 hasAuthorship W2796004214A5033409139 @default.
- W2796004214 hasAuthorship W2796004214A5060687985 @default.
- W2796004214 hasAuthorship W2796004214A5083617223 @default.
- W2796004214 hasAuthorship W2796004214A5085240167 @default.
- W2796004214 hasConcept C119857082 @default.
- W2796004214 hasConcept C153180895 @default.
- W2796004214 hasConcept C154945302 @default.
- W2796004214 hasConcept C16910744 @default.
- W2796004214 hasConcept C169903167 @default.
- W2796004214 hasConcept C199360897 @default.
- W2796004214 hasConcept C38652104 @default.
- W2796004214 hasConcept C41008148 @default.
- W2796004214 hasConcept C50644808 @default.
- W2796004214 hasConcept C51632099 @default.
- W2796004214 hasConcept C522325796 @default.
- W2796004214 hasConcept C95623464 @default.
- W2796004214 hasConceptScore W2796004214C119857082 @default.
- W2796004214 hasConceptScore W2796004214C153180895 @default.
- W2796004214 hasConceptScore W2796004214C154945302 @default.
- W2796004214 hasConceptScore W2796004214C16910744 @default.
- W2796004214 hasConceptScore W2796004214C169903167 @default.
- W2796004214 hasConceptScore W2796004214C199360897 @default.
- W2796004214 hasConceptScore W2796004214C38652104 @default.
- W2796004214 hasConceptScore W2796004214C41008148 @default.
- W2796004214 hasConceptScore W2796004214C50644808 @default.
- W2796004214 hasConceptScore W2796004214C51632099 @default.
- W2796004214 hasConceptScore W2796004214C522325796 @default.
- W2796004214 hasConceptScore W2796004214C95623464 @default.
- W2796004214 hasLocation W27960042141 @default.
- W2796004214 hasOpenAccess W2796004214 @default.
- W2796004214 hasPrimaryLocation W27960042141 @default.
- W2796004214 hasRelatedWork W2007562169 @default.
- W2796004214 hasRelatedWork W2162552722 @default.
- W2796004214 hasRelatedWork W2167421362 @default.
- W2796004214 hasRelatedWork W2194775991 @default.
- W2796004214 hasRelatedWork W2748789698 @default.
- W2796004214 hasRelatedWork W2753783305 @default.
- W2796004214 hasRelatedWork W2774423163 @default.
- W2796004214 hasRelatedWork W2900018096 @default.
- W2796004214 hasRelatedWork W2934843808 @default.
- W2796004214 hasRelatedWork W2946227741 @default.
- W2796004214 hasRelatedWork W2949506549 @default.
- W2796004214 hasRelatedWork W2962763344 @default.
- W2796004214 hasRelatedWork W2963207607 @default.
- W2796004214 hasRelatedWork W2963857521 @default.
- W2796004214 hasRelatedWork W2964041528 @default.
- W2796004214 hasRelatedWork W2964043980 @default.
- W2796004214 hasRelatedWork W2964153729 @default.
- W2796004214 hasRelatedWork W2964253222 @default.
- W2796004214 hasRelatedWork W3118608800 @default.
- W2796004214 hasRelatedWork W9657784 @default.
- W2796004214 isParatext "false" @default.
- W2796004214 isRetracted "false" @default.
- W2796004214 magId "2796004214" @default.