The last Dance : Robust backdoor attack via diffusion models and bayesian approach

Fuente: arXiv
Saved in:
Bibliographic Details
Main Author: Mengara, Orson
Format: Preprint
Published: 2024
Subjects:
Online Access:
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866917991070826496
author Mengara, Orson
author_facet Mengara, Orson
contents Diffusion models are state-of-the-art deep learning generative models that are trained on the principle of learning forward and backward diffusion processes via the progressive addition of noise and denoising. In this paper, we aim to fool audio-based DNN models, such as those from the Hugging Face framework, primarily those that focus on audio, in particular transformer-based artificial intelligence models, which are powerful machine learning models that save time and achieve results faster and more efficiently. We demonstrate the feasibility of backdoor attacks (called `BacKBayDiffMod`) on audio transformers derived from Hugging Face, a popular framework in the world of artificial intelligence research. The backdoor attack developed in this paper is based on poisoning model training data uniquely by incorporating backdoor diffusion sampling and a Bayesian approach to the distribution of poisoned data.
format Preprint
id arxiv_https___arxiv_org_abs_2402_05967
institution arXiv
publishDate 2024
record_format arxiv
spellingShingle The last Dance : Robust backdoor attack via diffusion models and bayesian approach
Mengara, Orson
Machine Learning
Artificial Intelligence
Cryptography and Security
Signal Processing
Diffusion models are state-of-the-art deep learning generative models that are trained on the principle of learning forward and backward diffusion processes via the progressive addition of noise and denoising. In this paper, we aim to fool audio-based DNN models, such as those from the Hugging Face framework, primarily those that focus on audio, in particular transformer-based artificial intelligence models, which are powerful machine learning models that save time and achieve results faster and more efficiently. We demonstrate the feasibility of backdoor attacks (called `BacKBayDiffMod`) on audio transformers derived from Hugging Face, a popular framework in the world of artificial intelligence research. The backdoor attack developed in this paper is based on poisoning model training data uniquely by incorporating backdoor diffusion sampling and a Bayesian approach to the distribution of poisoned data.
title The last Dance : Robust backdoor attack via diffusion models and bayesian approach
topic Machine Learning
Artificial Intelligence
Cryptography and Security
Signal Processing
url https://arxiv.org/abs/2402.05967