• English
    • Tiếng Việt
  • English 
    • English
    • Tiếng Việt
  • Login
View Item 
  •   VinSpace Home
  • The College of Engineering and Computer Science
  • Khoa D. Doan, PhD
  • View Item
  •   VinSpace Home
  • The College of Engineering and Computer Science
  • Khoa D. Doan, PhD
  • View Item
JavaScript is disabled for your browser. Some features of this site may not work without it.

Defending backdoor attacks on vision transformer via patch processing

Thumbnail
View/Open
Defending Backdoor Attacks on Vision Transformer via Patch Processing (1).pdf (732.2Kb)
Date
2023-01-16
Author
Doan, Dang Khoa
Lao, Yingjie
Yang, Peng
Li, Ping
Metadata
Show full item record
Abstract
Vision Transformers (ViTs) have a radically different architecture with significantly less inductive bias than Convolutional Neural Networks. Along with the improvement in performance, security and robustness of ViTs are also of great importance to study. In contrast to many recent works that exploit the robustness of ViTs against adversarial examples, this paper investigates a representative causative attack, i.e., backdoor. We first examine the vulnerability of ViTs against various backdoor attacks and find that ViTs are also quite vulnerable to existing attacks. However, we observe that the clean-data accuracy and backdoor attack success rate of ViTs respond distinctively to patch transformations before the positional encoding. Then, based on this finding, we propose an effective method for ViTs to defend both patch-based and blending-based trigger backdoor attacks via patch processing. The performances are evaluated on several benchmark datasets, including CIFAR10, GTSRB, and TinyImageNet, which show the proposed novel defense is very successful in mitigating backdoor attacks for ViTs. To the best of our knowledge, this paper presents the first defensive strategy that utilizes a unique characteristic of ViTs against backdoor attacks.
URI
https://vinspace.edu.vn/handle/VIN/266
Collections
  • Khoa D. Doan, PhD [4]

Contact Us | Send Feedback
 

 

Browse

All of VinSpaceCommunities & CollectionsBy Issue DateAuthorsTitlesSubjectsThis CollectionBy Issue DateAuthorsTitlesSubjects

My Account

LoginRegister

Contact Us | Send Feedback