Matches in SemOpenAlex for { <https://semopenalex.org/work/W2912794670> ?p ?o ?g. }
Showing items 1 to 89 of
89
with 100 items per page.
- W2912794670 abstract "In this appraisal paper, we evaluate the efficacy of SHIELD, a compression-based defense framework for countering adversarial attacks on image classification models, which was published at KDD 2018. Here, we consider alternative threat models not studied in the original work, where we assume that an adaptive adversary is aware of the ensemble defense approach, the defensive pre-processing, and the architecture and weights of the models used in the ensemble. We define scenarios with varying levels of threat and empirically analyze the proposed defense by varying the degree of information available to the attacker, spanning from a full white-box attack to the gray-box threat model described in the original work. To evaluate the robustness of the defense against an adaptive attacker, we consider the targeted-attack success rate of the Projected Gradient Descent (PGD) attack, which is a strong gradient-based adversarial attack proposed in adversarial machine learning research. We also experiment with training the SHIELD ensemble from scratch, which is different from re-training using a pre-trained model as done in the original work. We find that the targeted PGD attack has a success rate of 64.3% against the original SHIELD ensemble in the full white box scenario, but this drops to 48.9% if the models used in the ensemble are trained from scratch instead of being retrained. Our experiments further reveal that an ensemble whose models are re-trained indeed have higher correlation in the cosine similarity space, and models that are trained from scratch are less vulnerable to targeted attacks in the white-box and gray-box scenarios." @default.
- W2912794670 created "2019-02-21" @default.
- W2912794670 creator A5067745329 @default.
- W2912794670 date "2019-02-01" @default.
- W2912794670 modified "2023-09-27" @default.
- W2912794670 title "The Efficacy of SHIELD under Different Threat Models." @default.
- W2912794670 cites W2108598243 @default.
- W2912794670 cites W2460937040 @default.
- W2912794670 cites W2552767274 @default.
- W2912794670 cites W2570685808 @default.
- W2912794670 cites W2766972025 @default.
- W2912794670 cites W2773446523 @default.
- W2912794670 cites W2774644650 @default.
- W2912794670 cites W2788262295 @default.
- W2912794670 cites W2804566015 @default.
- W2912794670 cites W2808031418 @default.
- W2912794670 cites W2810611310 @default.
- W2912794670 cites W2885183727 @default.
- W2912794670 cites W2963062382 @default.
- W2912794670 cites W2963207607 @default.
- W2912794670 cites W2963431851 @default.
- W2912794670 cites W2963564844 @default.
- W2912794670 cites W2963744840 @default.
- W2912794670 cites W2964153729 @default.
- W2912794670 cites W2964253222 @default.
- W2912794670 hasPublicationYear "2019" @default.
- W2912794670 type Work @default.
- W2912794670 sameAs 2912794670 @default.
- W2912794670 citedByCount "3" @default.
- W2912794670 countsByYear W29127946702019 @default.
- W2912794670 crossrefType "posted-content" @default.
- W2912794670 hasAuthorship W2912794670A5067745329 @default.
- W2912794670 hasConcept C104317684 @default.
- W2912794670 hasConcept C111919701 @default.
- W2912794670 hasConcept C119857082 @default.
- W2912794670 hasConcept C119898033 @default.
- W2912794670 hasConcept C154945302 @default.
- W2912794670 hasConcept C185592680 @default.
- W2912794670 hasConcept C2778403875 @default.
- W2912794670 hasConcept C2781235140 @default.
- W2912794670 hasConcept C37736160 @default.
- W2912794670 hasConcept C38652104 @default.
- W2912794670 hasConcept C41008148 @default.
- W2912794670 hasConcept C41065033 @default.
- W2912794670 hasConcept C45942800 @default.
- W2912794670 hasConcept C55493867 @default.
- W2912794670 hasConcept C63479239 @default.
- W2912794670 hasConceptScore W2912794670C104317684 @default.
- W2912794670 hasConceptScore W2912794670C111919701 @default.
- W2912794670 hasConceptScore W2912794670C119857082 @default.
- W2912794670 hasConceptScore W2912794670C119898033 @default.
- W2912794670 hasConceptScore W2912794670C154945302 @default.
- W2912794670 hasConceptScore W2912794670C185592680 @default.
- W2912794670 hasConceptScore W2912794670C2778403875 @default.
- W2912794670 hasConceptScore W2912794670C2781235140 @default.
- W2912794670 hasConceptScore W2912794670C37736160 @default.
- W2912794670 hasConceptScore W2912794670C38652104 @default.
- W2912794670 hasConceptScore W2912794670C41008148 @default.
- W2912794670 hasConceptScore W2912794670C41065033 @default.
- W2912794670 hasConceptScore W2912794670C45942800 @default.
- W2912794670 hasConceptScore W2912794670C55493867 @default.
- W2912794670 hasConceptScore W2912794670C63479239 @default.
- W2912794670 hasLocation W29127946701 @default.
- W2912794670 hasOpenAccess W2912794670 @default.
- W2912794670 hasPrimaryLocation W29127946701 @default.
- W2912794670 hasRelatedWork W2620038827 @default.
- W2912794670 hasRelatedWork W2801117814 @default.
- W2912794670 hasRelatedWork W2895097814 @default.
- W2912794670 hasRelatedWork W2906208681 @default.
- W2912794670 hasRelatedWork W2912150633 @default.
- W2912794670 hasRelatedWork W2950815309 @default.
- W2912794670 hasRelatedWork W2982109374 @default.
- W2912794670 hasRelatedWork W2998625988 @default.
- W2912794670 hasRelatedWork W3001846878 @default.
- W2912794670 hasRelatedWork W3004704879 @default.
- W2912794670 hasRelatedWork W3023057171 @default.
- W2912794670 hasRelatedWork W3026228083 @default.
- W2912794670 hasRelatedWork W3038840086 @default.
- W2912794670 hasRelatedWork W3046449280 @default.
- W2912794670 hasRelatedWork W3105976275 @default.
- W2912794670 hasRelatedWork W3157850265 @default.
- W2912794670 hasRelatedWork W3183075005 @default.
- W2912794670 hasRelatedWork W3199524822 @default.
- W2912794670 hasRelatedWork W3213493070 @default.
- W2912794670 hasRelatedWork W3202833247 @default.
- W2912794670 isParatext "false" @default.
- W2912794670 isRetracted "false" @default.
- W2912794670 magId "2912794670" @default.
- W2912794670 workType "article" @default.