Skip to main content

Showing 1–2 of 2 results for author: Razmi, F

Searching in archive cs. Search in all archives.
.
  1. arXiv:2311.06227  [pdf, other

    cs.CR cs.LG

    Does Differential Privacy Prevent Backdoor Attacks in Practice?

    Authors: Fereshteh Razmi, Jian Lou, Li Xiong

    Abstract: Differential Privacy (DP) was originally developed to protect privacy. However, it has recently been utilized to secure machine learning (ML) models from poisoning attacks, with DP-SGD receiving substantial attention. Nevertheless, a thorough investigation is required to assess the effectiveness of different DP techniques in preventing backdoor attacks in practice. In this paper, we investigate th… ▽ More

    Submitted 10 November, 2023; originally announced November 2023.

  2. arXiv:2108.04206  [pdf, other

    cs.LG

    Classification Auto-Encoder based Detector against Diverse Data Poisoning Attacks

    Authors: Fereshteh Razmi, Li Xiong

    Abstract: Poisoning attacks are a category of adversarial machine learning threats in which an adversary attempts to subvert the outcome of the machine learning systems by injecting crafted data into training data set, thus increasing the machine learning model's test error. The adversary can tamper with the data feature space, data labels, or both, each leading to a different attack strategy with different… ▽ More

    Submitted 16 May, 2022; v1 submitted 9 August, 2021; originally announced August 2021.

    Comments: This work has been submitted to the IEEE for possible publication. Copyright may be transferred without notice, after which this version may no longer be accessible