REVIEW 3 cited by
Adversarial Attacks and Defenses in Machine Learning-Powered Networks: A Contemporary Survey
Not yet reviewed by Pith; the record is open.
This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.
SPECIMEN: schema-true, not a live event
T0 review · schema-true
One-sentence machine reading of the paper's core claim.
pith:XXXXXXXX · record.json · timestamp
Signed reviews
read the original abstract
Adversarial attacks and defenses in machine learning and deep neural network have been gaining significant attention due to the rapidly growing applications of deep learning in the Internet and relevant scenarios. This survey provides a comprehensive overview of the recent advancements in the field of adversarial attack and defense techniques, with a focus on deep neural network-based classification models. Specifically, we conduct a comprehensive classification of recent adversarial attack methods and state-of-the-art adversarial defense techniques based on attack principles, and present them in visually appealing tables and tree diagrams. This is based on a rigorous evaluation of the existing works, including an analysis of their strengths and limitations. We also categorize the methods into counter-attack detection and robustness enhancement, with a specific focus on regularization-based methods for enhancing robustness. New avenues of attack are also explored, including search-based, decision-based, drop-based, and physical-world attacks, and a hierarchical classification of the latest defense methods is provided, highlighting the challenges of balancing training costs with performance, maintaining clean accuracy, overcoming the effect of gradient masking, and ensuring method transferability. At last, the lessons learned and open challenges are summarized with future research opportunities recommended.
Forward citations
Cited by 3 Pith papers
-
Unveiling and Mitigating Adversarial Vulnerabilities in Iterative Optimizers
Differentiable iterative optimizers are vulnerable to small adversarial input perturbations that shift the objective's minimum, and adversarial training of their unrolled versions reduces this vulnerability.
-
The AI Security Zugzwang
The paper characterizes AI security zugzwang via forced movement, predictable vulnerability creation, and temporal pressure, and offers a taxonomy and response tactics.
-
Learning from the Good Ones: Risk Profiling-Based Defenses Against Evasion Attacks on DNNs
Training anomaly detectors only on instances least vulnerable to a simulated evasion attack increases recall by up to 27.5% over indiscriminate training in a blood glucose management case study.
Discussion (0). Continue with ORCID to comment.