secure

Title: The More Secure, The Less Equally Usable: Gender and Ethnicity (Un)fairness of Deep Face Recognition along Security Thresholds. (arXiv:2209.15550v1 [cs.CV])

Title: Hidden in Plain Sight: Exploring Encrypted Channels in Android apps. (arXiv:2209.15107v1 [cs.CR])

Title: Securing Large-Scale D2D Networks Using Covert Communication and Friendly Jamming. (arXiv:2209.15170v1 [cs.CR])

Title: Cerberus: A Formal Approach to Secure and Efficient Enclave Memory Sharing. (arXiv:2209.15253v1 [cs.CR])

security

Title: Data Querying with Ciphertext Policy Attribute Based Encryption. (arXiv:2209.15103v1 [cs.CR])

Title: SoK: On the Impossible Security of Very Large Foundation Models. (arXiv:2209.15259v1 [cs.LG])

Title: Family-Based Fingerprint Analysis: A Position Paper. (arXiv:2209.15620v1 [cs.CR])

privacy

Title: Visual Privacy Protection Based on Type-I Adversarial Attack. (arXiv:2209.15304v1 [cs.CV])

Title: L-SRR: Local Differential Privacy for Location-Based Services with Staircase Randomized Response. (arXiv:2209.15091v1 [cs.CR])

Title: Individual Privacy Accounting with Gaussian Differential Privacy. (arXiv:2209.15596v1 [cs.CR])

Title: Machine Unlearning Method Based On Projection Residual. (arXiv:2209.15276v1 [cs.LG])

This paper adopts the projection residual method based on Newton iteration method. The main purpose is to implement machine unlearning tasks in the context of linear regression models and neural network models. This method mainly uses the iterative weighting method to completely forget the data and its corresponding influence, and its computational cost is linear in the feature dimension of the data. This method can improve the current machine learning method. At the same time, it is independent of the size of the training set. Results were evaluated by feature injection testing (FIT). Experiments show that this method is more thorough in deleting data, which is close to model retraining.

Title: TabDDPM: Modelling Tabular Data with Diffusion Models. (arXiv:2209.15421v1 [cs.LG])

protect

Title: Anomaly localization for copy detection patterns through print estimations. (arXiv:2209.15625v1 [cs.CV])

Title: A Survey: Implementations of Non-fungible Token System in Different Fields. (arXiv:2209.15288v1 [cs.CR])

defense

attack

Title: Physical Adversarial Attack meets Computer Vision: A Decade Survey. (arXiv:2209.15179v1 [cs.CV])

Title: Reliable Face Morphing Attack Detection in On-The-Fly Border Control Scenario with Variation in Image Resolution and Capture Distance. (arXiv:2209.15474v1 [cs.CV])

Title: Impact of Face Image Quality Estimation on Presentation Attack Detection. (arXiv:2209.15489v1 [cs.CV])

Title: Augmentation Backdoors. (arXiv:2209.15139v1 [cs.LG])

Title: Data Poisoning Attacks Against Multimodal Encoders. (arXiv:2209.15266v1 [cs.CR])

Title: Wi-attack: Cross-technology Impersonation Attack against iBeacon Services. (arXiv:2209.15322v1 [cs.CR])

robust

Title: Generalizability of Adversarial Robustness Under Distribution Shifts. (arXiv:2209.15042v1 [cs.LG])

Title: 3D UX-Net: A Large Kernel Volumetric ConvNet Modernizing Hierarchical Transformer for Medical Image Segmentation. (arXiv:2209.15076v1 [cs.CV])

Title: Your Out-of-Distribution Detection Method is Not Robust!. (arXiv:2209.15246v1 [cs.CV])

Title: ERNIE-ViL 2.0: Multi-view Contrastive Learning for Image-Text Pre-training. (arXiv:2209.15270v1 [cs.CV])

Title: Towards General-Purpose Representation Learning of Polygonal Geometries. (arXiv:2209.15458v1 [cs.CV])

Title: Few-shot Text Classification with Dual Contrastive Consistency. (arXiv:2209.15069v1 [cs.CL])

Title: On The Robustness of Self-Supervised Representations for Spoken Language Modeling. (arXiv:2209.15483v1 [cs.CL])

Title: OAK4XAI: Model towards Out-Of-Box eXplainable Artificial Intelligence for Digital Agriculture. (arXiv:2209.15104v1 [cs.AI])

Title: Ensemble Machine Learning Model Trained on a New Synthesized Dataset Generalizes Well for Stress Prediction Using Wearable Devices. (arXiv:2209.15146v1 [cs.LG])

Methods. Sensor biomarker data from six public datasets were utilized in this study. To test model generalization, we developed a gradient boosting model trained on one dataset (SWELL), and tested its predictive power on two datasets previously used in other studies (WESAD, NEURO). Next, we merged four small datasets, i.e. (SWELL, NEURO, WESAD, UBFC-Phys), to provide a combined total of 99 subjects,. In addition, we utilized random sampling combined with another dataset (EXAM) to build a larger training dataset consisting of 200 synthesized subjects,. Finally, we developed an ensemble model that combines our gradient boosting model with an artificial neural network, and tested it on two additional, unseen publicly available stress datasets (WESAD and Toadstool).

Results. Our method delivers a robust stress measurement system capable of achieving 85% predictive accuracy on new, unseen validation data, achieving a 25% performance improvement over single models trained on small datasets.

Conclusion. Models trained on small, single study protocol datasets do not generalize well for use on new, unseen data and lack statistical power. Ma-chine learning models trained on a dataset containing a larger number of varied study subjects capture physiological variance better, resulting in more robust stress detection.

Title: Online Multi-Agent Decentralized Byzantine-robust Gradient Estimation. (arXiv:2209.15274v1 [cs.AI])

Title: Observational Robustness and Invariances in Reinforcement Learning via Lexicographic Objectives. (arXiv:2209.15320v1 [cs.LG])

Title: Momentum Tracking: Momentum Acceleration for Decentralized Deep Learning on Heterogeneous Data. (arXiv:2209.15505v1 [cs.LG])

biometric

Title: Two-headed eye-segmentation approach for biometric identification. (arXiv:2209.15471v1 [cs.CV])

steal

extraction

Title: Guided Unsupervised Learning by Subaperture Decomposition for Ocean SAR Image Retrieval. (arXiv:2209.15034v1 [cs.CV])

Title: Towards End-to-end Handwritten Document Recognition. (arXiv:2209.15362v1 [cs.CV])

Title: Improving 3D-aware Image Synthesis with A Geometry-aware Discriminator. (arXiv:2209.15637v1 [cs.CV])

Title: RL-MD: A Novel Reinforcement Learning Approach for DNA Motif Discovery. (arXiv:2209.15181v1 [cs.LG])

Title: Designing and Training of Lightweight Neural Networks on Edge Devices using Early Halting in Knowledge Distillation. (arXiv:2209.15560v1 [cs.LG])

membership infer

federate

Title: Rethinking Data Heterogeneity in Federated Learning: Introducing a New Notion and Standard Benchmarks. (arXiv:2209.15595v1 [cs.LG])

Title: Fed-CBS: A Heterogeneity-Aware Client Sampling Mechanism for Federated Learning via Class-Imbalance Reduction. (arXiv:2209.15245v1 [cs.LG])

Title: Sparse Random Networks for Communication-Efficient Federated Learning. (arXiv:2209.15328v1 [cs.LG])

Title: Vertical Semi-Federated Learning for Efficient Online Advertising. (arXiv:2209.15635v1 [cs.LG])

In this paper, we advocate new learning setting Semi-VFL (Vertical Semi-Federated Learning) as a lightweight solution to utilize all available data (both the overlapped and non-overlapped data) that is free from federated serving. Semi-VFL is expected to perform better than single-party models and maintain a low inference cost. It's notably important to i) alleviate the absence of the passive party's feature and ii) adapt to the whole sample space to implement a good solution for Semi-VFL. Thus, we propose a carefully designed joint privileged learning framework (JPL) as an efficient implementation of Semi-VFL. Specifically, we build an inference-efficient single-party student model applicable to the whole sample space and meanwhile maintain the advantage of the federated feature extension. Novel feature imitation and ranking consistency restriction methods are proposed to extract cross-party feature correlations and maintain cross-sample-space consistency for both the overlapped and non-overlapped data.

We conducted extensive experiments on real-world advertising datasets. The results show that our method achieves the best performance over baseline methods and validate its effectiveness in maintaining cross-view feature correlation.

fair

Title: Rethinking and Recomputing the Value of ML Models. (arXiv:2209.15157v1 [cs.LG])

Title: MEIM: Multi-partition Embedding Interaction Beyond Block Term Format for Efficient and Expressive Link Prediction. (arXiv:2209.15597v1 [cs.AI])

Title: Variable-Based Calibration for Machine Learning Classifiers. (arXiv:2209.15154v1 [cs.LG])

Title: Higher-order Neural Additive Models: An Interpretable Machine Learning Model with Feature Interactions. (arXiv:2209.15409v1 [cs.LG])

interpretability

Title: Evaluation of importance estimators in deep learning classifiers for Computed Tomography. (arXiv:2209.15398v1 [cs.CV])

Title: Neural Integral Equations. (arXiv:2209.15190v1 [cs.LG])

Title: Explainable Censored Learning: Finding Critical Features with Long Term Prognostic Values for Survival Prediction. (arXiv:2209.15450v1 [cs.LG])

exlainability

watermark

Title: Generative Model Watermarking Based on Human Visual System. (arXiv:2209.15268v1 [cs.CV])