Quantum neural networks under depolarization noise: exploring white-box attacks and defenses

被引:0
|
作者
Winderl, David [1 ]
Franco, Nicola [1 ]
Lorenz, Jeanette Miriam [1 ]
机构
[1] Fraunhofer Inst Cognit Syst IKS, Hansastr 32, D-80686 Munich, Germany
关键词
Quantum machine learning; Quantum computing; Adversarial robustness;
D O I
10.1007/s42484-024-00208-6
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Leveraging the unique properties of quantum mechanics, quantum machine learning (QML) promises computational breakthroughs and enriched perspectives where traditional systems reach their boundaries. However, similarly to classical machine learning, QML is not immune to adversarial attacks. Quantum adversarial machine learning has become instrumental in highlighting the weak points of QML models when faced with adversarial crafted feature vectors. Diving deep into this domain, our exploration shines a light on the interplay between depolarization noise and adversarial robustness. While previous results enhanced robustness from adversarial threats through depolarization noise, our findings paint a different picture. Interestingly, adding depolarization noise discontinued the effect of providing further robustness for a multi-class classification scenario. Consolidating our findings, we conducted experiments with a multi-class classifier adversarially trained on gate-based quantum simulators, further elucidating this unexpected behavior.
引用
收藏
页数:13
相关论文
共 50 条
  • [31] Trojan Attacks and Defenses on Deep Neural Networks
    Liu, Yingqi
    ProQuest Dissertations and Theses Global, 2022,
  • [32] Efficient Untargeted White-Box Adversarial Attacks Based on Simple Initialization
    Zhou, Yunyi
    Gao, Haichang
    He, Jianping
    Zhang, Shudong
    Wu, Zihui
    CHINESE JOURNAL OF ELECTRONICS, 2024, 33 (04) : 979 - 988
  • [33] Two Sides of the Same Coin: White-box and Black-box Attacks for Transfer Learning
    Zhang, Yinghua
    Song, Yangqiu
    Liang, Jian
    Bai, Kun
    Yang, Qiang
    KDD '20: PROCEEDINGS OF THE 26TH ACM SIGKDD INTERNATIONAL CONFERENCE ON KNOWLEDGE DISCOVERY & DATA MINING, 2020, : 2989 - 2997
  • [34] Defeating state-of-the-art white-box countermeasures with advanced gray-box attacks
    Goubin L.
    Rivain M.
    Wang J.
    IACR Trans. Cryptogr. Hardw. Embed. Syst., 2020, 3 (454-482): : 454 - 482
  • [35] On Membership of Black-box or White-box of Artificial Neural Network Models
    Wu, Z. F.
    Li, Jin
    Cai, M. Y.
    Zhang, W. J.
    Lin, Y.
    PROCEEDINGS OF THE 2016 IEEE 11TH CONFERENCE ON INDUSTRIAL ELECTRONICS AND APPLICATIONS (ICIEA), 2016, : 1400 - 1404
  • [36] DeepCNP: An efficient white-box testing of deep neural networks by aligning critical neuron paths
    Liu, Weiguang
    Luo, Senlin
    Pan, Limin
    Zhang, Zhao
    INFORMATION AND SOFTWARE TECHNOLOGY, 2025, 179
  • [37] Revisiting Higher-order Computational Attacks against White-box Implementations
    Maghrebi, Houssem
    Alessio, Davide
    ICISSP: PROCEEDINGS OF THE 6TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY, 2020, : 265 - 272
  • [38] Collision-Based Attacks on White-Box Implementations of the AES Block Cipher
    Lu, Jiqiang
    Wang, Mingxue
    Wang, Can
    Yang, Chen
    SELECTED AREAS IN CRYPTOGRAPHY, SAC 2022, 2024, 13742 : 328 - 352
  • [39] A Survey on Privacy Attacks and Defenses in Graph Neural Networks
    Luo, Lanhua
    Ren, Wang
    Huang, Huasheng
    Wang, Fengling
    INFORMATION TECHNOLOGY AND CONTROL, 2024, 53 (04):
  • [40] Saliency Map-Based Local White-Box Adversarial Attack Against Deep Neural Networks
    Liu, Haohan
    Zuo, Xingquan
    Huang, Hai
    Wan, Xing
    ARTIFICIAL INTELLIGENCE, CICAI 2022, PT II, 2022, 13605 : 3 - 14