Stochastic Computing as a Defence Against Adversarial Attacks

被引:0
|
作者
Neugebauer, Florian [1 ]
Vekariya, Vivek [2 ]
Polian, Ilia [1 ]
Hayes, John P. [3 ]
机构
[1] Univ Stuttgart, Inst Comp Architecture & Comp Engn, Stuttgart, Germany
[2] Fortiss GmbH, Munich, Germany
[3] Univ Michigan, Comp Engn Lab, Ann Arbor, MI 48109 USA
基金
美国国家科学基金会;
关键词
stochastic computing; neural network; adversarial attack;
D O I
10.1109/DSN-W58399.2023.00053
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Neural networks (NNs) are increasingly often employed in safety critical systems. It is therefore necessary to ensure that these NNs are robust against malicious interference in the form of adversarial attacks, which cause an NN to misclassify inputs. Many proposed defenses against such attacks incorporate randomness in order to make it harder for an attacker to find small input modifications that result in misclassification. Stochastic computing (SC) is a type of approximate computing based on pseudo-random bit-streams that has been successfully used to implement convolutional neural networks (CNNs). Some results have previously suggested that such stochastic CNNs (SCNNs) are partially robust against adversarial attacks. In this work, we will demonstrate that SCNNs do indeed possess inherent protection against some powerful adversarial attacks. Our results show that the white-box C&W attack is up to 16x less successful compared to an equivalent binary NN, and Boundary Attack even fails to generate adversarial inputs in many cases.
引用
收藏
页码:191 / 194
页数:4
相关论文
共 50 条
  • [21] Bringing robustness against adversarial attacks
    Pereira, Gean T.
    de Carvalho, Andre C. P. L. F.
    NATURE MACHINE INTELLIGENCE, 2019, 1 (11) : 499 - 500
  • [22] Resilience of GANs against Adversarial Attacks
    Rudayskyy, Kyrylo
    Miri, Ali
    SECRYPT : PROCEEDINGS OF THE 19TH INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY, 2022, : 390 - 397
  • [23] Transferable Adversarial Attacks Against ASR
    Gao, Xiaoxue
    Li, Zexin
    Chen, Yiming
    Liu, Cong
    Li, Haizhou
    IEEE SIGNAL PROCESSING LETTERS, 2024, 31 : 2200 - 2204
  • [24] Adversarial mRMR against Evasion Attacks
    Wu, Miaomiao
    Li, Yun
    2018 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2018,
  • [25] WASSERTRAIN: AN ADVERSARIAL TRAINING FRAMEWORK AGAINST WASSERSTEIN ADVERSARIAL ATTACKS
    Zhao, Qingye
    Chen, Xin
    Zhao, Zhuoyu
    Tang, Enyi
    Li, Xuandong
    2022 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING (ICASSP), 2022, : 2734 - 2738
  • [26] Defence for Distributed Denial of Service Attacks in Cloud Computing
    Carlin, Andrew
    Hammoudeh, Mohammad
    Aldabbas, Omar
    INTERNATIONAL CONFERENCE ON ADVANCED WIRELESS INFORMATION AND COMMUNICATION TECHNOLOGIES (AWICT 2015), 2015, 73 : 490 - 497
  • [27] Defense Against Adversarial Attacks Based on Stochastic Descent Sign Activation Networks on Medical Images
    Yang, Yanan
    Shih, Frank Y.
    Roshan, Usman
    INTERNATIONAL JOURNAL OF PATTERN RECOGNITION AND ARTIFICIAL INTELLIGENCE, 2022, 36 (03)
  • [28] Adversarial attacks and defenses in physiological computing:a systematic review
    Dongrui Wu
    Jiaxin Xu
    Weili Fang
    Yi Zhang
    Liuqing Yang
    Xiaodong Xu
    Hanbin Luo
    Xiang Yu
    National Science Open, 2023, 2 (01) : 65 - 93
  • [29] Adversarial Attacks and Defenses in Physiological Computing: A Systematic Review
    The Ministry of Education Key Laboratory of Image Processing and Intelligent Control, School of Artificial Intelligence and Automation, Huazhong University of Science and Technology, Wuhan
    430074, China
    不详
    311121, China
    不详
    430074, China
    不详
    430074, China
    不详
    MI
    48109, United States
    不详
    430074, China
    arXiv, 1600,
  • [30] Protecting JPEG Images Against Adversarial Attacks
    Prakash, Aaditya
    Moran, Nick
    Garber, Solomon
    DiLillo, Antonella
    Storer, James
    2018 DATA COMPRESSION CONFERENCE (DCC 2018), 2018, : 137 - 146