arrow
Return

ICT: Invisible Computable Trigger Backdoor Attacks in Transfer Learning

delete2024-11-01
delete0
PRE
AI
X
Xiang Chen
刘博 cover
刘博 (Bo Liu) *
S
Shaofeng Zhao
M
Ming Liu
H
Hui Xu
Z
Zhanbo Li
DOI:10.1109/TCE.2024.3476313delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Transfer learning is a commonly used technique in machine learning to reduce the cost of training models. However, it is susceptible to backdoor attacks that cause models to misclassify data with specific triggers while behaving normally on clean data. Existing methods for backdoor attacks in transfer learning either do not consider attack stealthiness or require compromising attack effectiveness for trigger concealment. To overcome this challenge, we introduce the concept of Invisible and Computable Trigger (ICT), which involves two critical steps. First, we propose a new computable trigger obtained by training on input data to greatly increase the attack effect during inference. Second, we embed the trigger into an imperceptible perturbation, allowing poisoned data to appear indistinguishable from clean data. Our experimental results demonstrate that our approach outperforms state-of-the-art methods in both attack effect and stealthiness.
Keywords:
Data models
Training
Computational modeling
Transfer learning
Perturbation methods
Biological system modeling
Costs
Consumer electronics
Training data
Optimization
Neural network
transfer learning
computer security
backdoor attack
stealthiness

Journal

IEEE Transactions on Consumer Electronics cover
IEEE Transactions on Consumer Electronics
IF:
10.9
Papers:
5.1K
Citations:
6.8K

Organization

Z
Zhengzhou University
Scholars:
6.8W
Papers: 4.4W
Citations: 8.5W
H
henan university of economics & law
Scholars:
360
Papers: 403
Citations: 0
W
wuhan university
Scholars:
8.1W
Papers: 5.8W
Citations: 70
researcher View more organizations