Stealthy Frequency-Domain Backdoor Attacks: Fourier Decomposition and Fundamental Frequency Injection

被引:2
|
作者
Ma, Qianli [1 ]
Qin, Junping [1 ]
Yan, Kai [1 ]
Wang, Lei [1 ]
Sun, Hao [1 ]
机构
[1] Inner Mongolia Univ Technol, Coll Data Sci & Applicat, Hohhot 010000, Peoples R China
关键词
AI security; backdoor attacks; deep learning; Fourier decomposition;
D O I
10.1109/LSP.2023.3330126
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
The rising reliance on deep learning models that are black-box in nature is concerning stakeholders about their security in artificial intelligence (AI) applications. Backdoor attacks are a significant challenge due to their ability to remain undetectable. Currently, researchers are focusing on the injection of frequency-domain triggers to enhance the covert nature of these attacks. Nevertheless, this method can introduce uncertain frequency variations that reduce the effectiveness of the attacks. We propose a method for Frequency-Domain Backdoor Attacks in response. The method utilizes Fourier Decomposition and Fundamental Frequency Injection techniques. In our method, we employ Fourier decomposition to mask the fundamental frequency of unsuitable bands, thereby guaranteeing covert trigger injection. As a result, this technique enhances temporal and spectral camouflaging, considerably reducing the likelihood of discovery. Our research contributes to a deeper understanding of backdoor attacks and enhances the security of AI systems by examining this innovative approach. Our approach to AI security centres around exploiting the smooth characteristics of frequencies within the frequency domain. This approach forms the foundation of our work in the field of artificial intelligence security.
引用
收藏
页码:1677 / 1681
页数:5
相关论文
共 50 条
  • [41] Frequency-domain Hadamard spectroscopy
    Kupce, E
    Freeman, R
    JOURNAL OF MAGNETIC RESONANCE, 2003, 162 (01) : 158 - 165
  • [42] FREQUENCY-DOMAIN IDENTIFICATION FOR UNDERGRADUATES
    HASSUL, M
    SHAHIAN, B
    IEEE TRANSACTIONS ON EDUCATION, 1992, 35 (04) : 368 - 375
  • [43] FREQUENCY-DOMAIN CODING OF SPEECH
    TRIBOLET, JM
    CROCHIERE, RE
    IEEE TRANSACTIONS ON ACOUSTICS SPEECH AND SIGNAL PROCESSING, 1979, 27 (05): : 512 - 530
  • [44] Frequency-Domain Spatial Modulation
    Arrano, Hernan F.
    Sari, Hikmet
    Cheng, Chien-Chun
    PROCEEDINGS OF THE 2016 INTERNATIONAL CONFERENCE ON ADVANCED TECHNOLOGIES FOR COMMUNICATIONS (ATC), 2016, : 76 - 79
  • [45] FREQUENCY-DOMAIN IMAGE ERRORS
    ANDERSON, GB
    HUANG, TS
    PATTERN RECOGNITION, 1971, 3 (02) : 185 - &
  • [46] FREQUENCY-DOMAIN SPECTRAL WHITENING
    STEVENS, JW
    GEOPHYSICS, 1983, 48 (06) : 808 - 808
  • [47] Robust frequency-domain precoders
    Manton, JH
    Hua, YB
    IEEE COMMUNICATIONS LETTERS, 2001, 5 (02) : 40 - 42
  • [49] Sparse Frequency-Domain Reverberator
    Vilkamo, Juha
    Neugebauer, Bernhard
    Plogsties, Jan
    JOURNAL OF THE AUDIO ENGINEERING SOCIETY, 2011, 59 (12): : 936 - 943
  • [50] FREQUENCY-DOMAIN ADAPTIVE CONTROLLER
    HARRIS, SL
    MELLICHAMP, DA
    INDUSTRIAL & ENGINEERING CHEMISTRY PROCESS DESIGN AND DEVELOPMENT, 1981, 20 (02): : 188 - 196