Ana gezinime geç Aramaya geç Ana içeriğe geç

A Textual Clean-Label Backdoor Attack Strategy against Spam Detection

  • Istanbul Technical University

Araştırma sonucu: Kitap/Rapor/Konferans Bildirisinde BölümKonferans katkısıbilirkişi

2 Atıf (Scopus)

Özet

Recently, one of the popular areas that uses machine learning is the dynamic spam detection. They use it to upgrade their detection models with newly collected data against various attacks. On the other hand, many methods have been developed to reduce the success rate of the security layer of target systems that use machine learning algorithms for detection. Specifically, attackers insert poisoned data samples that contain trigger words or a sentence into the training dataset of a target system, which reduces the learning rate of the machine learning model. In this case, the number of false-positives increases when a spam sentence contains this trigger, which is called a backdoor in machine learning. In this research, we have focused on the clean-label backdoor attack, which has correctly labeled poisoned data samples. We propose an approach where these samples lead the machine learning model to learn the trigger words when the triggers occur. We empirically analyze the proposed approach with an SMS spam dataset. Our experimental results show that with a correct setting and specially crafted clean-label poisoning data samples, predictions of an LSTM model can be successfully deceived.

Orijinal dilİngilizce
Ana bilgisayar yayını başlığıProceedings - 2021 14th International Conference on Security of Information and Networks, SIN 2021
EditörlerAndrei Petrovski, Naghmeh Moradpoor, Atilla Elci
YayınlayanInstitute of Electrical and Electronics Engineers Inc.
ISBN (Elektronik)9781728192666
DOI'lar
Yayın durumuYayınlandı - 2021
Etkinlik14th International Conference on Security of Information and Networks, SIN 2021 - Virtual, Online, United Kingdom
Süre: 15 Ara 202117 Ara 2021

Yayın serisi

AdıProceedings - 2021 14th International Conference on Security of Information and Networks, SIN 2021

???event.eventtypes.event.conference???

???event.eventtypes.event.conference???14th International Conference on Security of Information and Networks, SIN 2021
Ülke/BölgeUnited Kingdom
ŞehirVirtual, Online
Periyot15/12/2117/12/21

Bibliyografik not

Publisher Copyright:
© 2021 IEEE.

Parmak izi

A Textual Clean-Label Backdoor Attack Strategy against Spam Detection' araştırma başlıklarına git. Birlikte benzersiz bir parmak izi oluştururlar.

Alıntı Yap