Stochastic Computing as a Defence Against Adversarial Attacks

被引:0
|
作者
Neugebauer, Florian [1 ]
Vekariya, Vivek [2 ]
Polian, Ilia [1 ]
Hayes, John P. [3 ]
机构
[1] Univ Stuttgart, Inst Comp Architecture & Comp Engn, Stuttgart, Germany
[2] Fortiss GmbH, Munich, Germany
[3] Univ Michigan, Comp Engn Lab, Ann Arbor, MI 48109 USA
基金
美国国家科学基金会;
关键词
stochastic computing; neural network; adversarial attack;
D O I
10.1109/DSN-W58399.2023.00053
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Neural networks (NNs) are increasingly often employed in safety critical systems. It is therefore necessary to ensure that these NNs are robust against malicious interference in the form of adversarial attacks, which cause an NN to misclassify inputs. Many proposed defenses against such attacks incorporate randomness in order to make it harder for an attacker to find small input modifications that result in misclassification. Stochastic computing (SC) is a type of approximate computing based on pseudo-random bit-streams that has been successfully used to implement convolutional neural networks (CNNs). Some results have previously suggested that such stochastic CNNs (SCNNs) are partially robust against adversarial attacks. In this work, we will demonstrate that SCNNs do indeed possess inherent protection against some powerful adversarial attacks. Our results show that the white-box C&W attack is up to 16x less successful compared to an equivalent binary NN, and Boundary Attack even fails to generate adversarial inputs in many cases.
引用
收藏
页码:191 / 194
页数:4
相关论文
共 50 条
  • [1] Bridging Machine Learning and Cryptography in Defence Against Adversarial Attacks
    Taran, Olga
    Rezaeifar, Shideh
    Voloshynovskiy, Slava
    COMPUTER VISION - ECCV 2018 WORKSHOPS, PT II, 2019, 11130 : 267 - 279
  • [2] XAI enhancing cyber defence against adversarial attacks in industrial applications
    Makridis, Georgios
    Theodoropoulos, Spyros
    Dardanis, Dimitrios
    Makridis, Ioannis
    Separdani, Maria Margarita
    Fatouros, Georgios
    Kyriazis, Dimosthenis
    Koulouris, Panagiotis
    2022 IEEE 5TH INTERNATIONAL CONFERENCE ON IMAGE PROCESSING APPLICATIONS AND SYSTEMS, IPAS, 2022,
  • [3] Discretization Inspired Defence Algorithm Against Adversarial Attacks on Tabular Data
    Zhou, Jiahui
    Zaidi, Nayyar
    Zhang, Yishuo
    Li, Gang
    ADVANCES IN KNOWLEDGE DISCOVERY AND DATA MINING, PAKDD 2022, PT II, 2022, 13281 : 367 - 379
  • [4] Stochastic games for power grid coordinated defence against coordinated attacks
    Feng, Xiaomeng
    Sun, Qiuye
    IET CYBER-PHYSICAL SYSTEMS: THEORY & APPLICATIONS, 2020, 5 (03) : 292 - 300
  • [5] Defending edge computing based metaverse AI against adversarial attacks
    Yi, Zhangao
    Qian, Yongfeng
    Chen, Min
    Alqahtani, Salman A.
    Hossain, M. Shamim
    AD HOC NETWORKS, 2023, 150
  • [6] Adversarial Attacks on Stochastic Bandits
    Jun, Kwang-Sung
    Li, Lihong
    Ma, Yuzhe
    Zhu, Xiaojin
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 31 (NIPS 2018), 2018, 31
  • [7] Stochastic sparse adversarial attacks
    Cesaire, Manon
    Schott, Lucas
    Hajri, Hatem
    Lamprier, Sylvain
    Gallinari, Patrick
    2021 IEEE 33RD INTERNATIONAL CONFERENCE ON TOOLS WITH ARTIFICIAL INTELLIGENCE (ICTAI 2021), 2021, : 1247 - 1254
  • [8] Attack-data independent defence mechanism against adversarial attacks on ECG signal
    Rahman, Saifur
    Pal, Shantanu
    Habib, Ahsan
    Pan, Lei
    Karmakar, Chandan
    COMPUTER NETWORKS, 2025, 258
  • [9] Human-in-the-Loop Person Re-Identification as a Defence Against Adversarial Attacks
    Delussu, Rita
    Putzu, Lorenzo
    Ledda, Emanuele
    Fumera, Giorgio
    IMAGE ANALYSIS AND PROCESSING - ICIAP 2023 WORKSHOPS, PT I, 2024, 14365 : 330 - 342
  • [10] Defence against adversarial attacks using classical and quantum-enhanced Boltzmann machinesy
    Kehoe A.
    Wittek P.
    Xue Y.
    Pozas-Kerstjens A.
    Machine Learning: Science and Technology, 2021, 2 (04):