secure

Title: Ping-Pong Swaps. (arXiv:2211.13335v1 [cs.CR])

Title: Fast and Efficient Malware Detection with Joint Static and Dynamic Features Through Transfer Learning. (arXiv:2211.13860v1 [cs.CR])

security

Title: Corn Yield Prediction based on Remotely Sensed Variables Using Variational Autoencoder and Multiple Instance Regression. (arXiv:2211.13286v1 [cs.CV])

Title: Detecting Anomalies using Generative Adversarial Networks on Images. (arXiv:2211.13808v1 [cs.CV])

Title: Principled Data-Driven Decision Support for Cyber-Forensic Investigations. (arXiv:2211.13345v1 [cs.CR])

Title: FedCut: A Spectral Analysis Framework for Reliable Detection of Byzantine Colluders. (arXiv:2211.13389v1 [cs.CR])

Title: Network Security Modelling with Distributional Data. (arXiv:2211.13419v1 [cs.CR])

Title: GitHub Considered Harmful? Analyzing Open-Source Projects for the Automatic Generation of Cryptographic API Call Sequences. (arXiv:2211.13498v1 [cs.CR])

Title: SmartIntentNN: Towards Smart Contract Intent Detection. (arXiv:2211.13670v1 [cs.CR])

The demo video is available on \url{https://youtu.be/ho1SMtYm-wI}.

Title: Blockchain based solution design for Energy Exchange Platform. (arXiv:2211.13907v1 [cs.CR])

Title: End-to-End Stochastic Optimization with Energy-Based Model. (arXiv:2211.13837v1 [cs.LG])

privacy

Title: Differentially Private Image Classification from Features. (arXiv:2211.13403v1 [cs.LG])

Title: Responsible Active Learning via Human-in-the-loop Peer Study. (arXiv:2211.13587v1 [cs.LG])

Title: Data Provenance Inference in Machine Learning. (arXiv:2211.13416v1 [cs.LG])

Title: A Privacy-Preserving Outsourced Data Model in Cloud Environment. (arXiv:2211.13542v1 [cs.CR])

Title: FPT: a Fixed-Point Accelerator for Torus Fully Homomorphic Encryption. (arXiv:2211.13696v1 [cs.CR])

We present FPT, a Fixed-Point FPGA accelerator for TFHE bootstrapping. FPT is the first hardware accelerator to heavily exploit the inherent noise present in FHE calculations. Instead of double or single-precision floating-point arithmetic, it implements TFHE bootstrapping entirely with approximate fixed-point arithmetic. Using an in-depth analysis of noise propagation in bootstrapping FFT computations, FPT is able to use noise-trimmed fixed-point representations that are up to 50% smaller than prior implementations using floating-point or integer FFTs.

FPT's microarchitecture is built as a streaming processor inspired by traditional streaming DSPs: it instantiates high-throughput computational stages that are directly cascaded, with simplified control logic and routing networks. FPT's streaming approach allows 100% utilization of arithmetic units and requires only small bootstrapping key caches, enabling an entirely compute-bound bootstrapping throughput of 1 BS / 35$\mu$s. This is in stark contrast to the established classical CPU approach to FHE bootstrapping acceleration, which tends to be heavily memory and bandwidth-constrained.

FPT is fully implemented and evaluated as a bootstrapping FPGA kernel for an Alveo U280 datacenter accelerator card. FPT achieves almost three orders of magnitude higher bootstrapping throughput than existing CPU-based implementations, and 2.5$\times$ higher throughput compared to recent ASIC emulation experiments.

Title: CryptoLight: An Electro-Optical Accelerator for Fully Homomorphic Encryption. (arXiv:2211.13780v1 [cs.CR])

Title: Turning the Tables: Biased, Imbalanced, Dynamic Tabular Datasets for ML Evaluation. (arXiv:2211.13358v1 [cs.LG])

protect

Title: Tracking Dataset IP Use in Deep Neural Networks. (arXiv:2211.13535v1 [cs.CR])

defense

attack

Title: Dual Graphs of Polyhedral Decompositions for the Detection of Adversarial Attacks. (arXiv:2211.13305v1 [cs.CV])

Title: SAGA: Spectral Adversarial Geometric Attack on 3D Meshes. (arXiv:2211.13775v1 [cs.CV])

We propose a novel framework for a geometric adversarial attack on a 3D mesh autoencoder. In this setting, an adversarial input mesh deceives the autoencoder by forcing it to reconstruct a different geometric shape at its output. The malicious input is produced by perturbing a clean shape in the spectral domain. Our method leverages the spectral decomposition of the mesh along with additional mesh-related properties to obtain visually credible results that consider the delicacy of surface distortions. Our code is publicly available at https://github.com/StolikTomer/SAGA.

Title: Specognitor: Identifying Spectre Vulnerabilities via Prediction-Aware Symbolic Execution. (arXiv:2211.13526v1 [cs.CR])

In this paper, we illustrate the weakness of prediction-agnostic state-of-the-art approaches. We propose Specognitor, a novel prediction-aware symbolic execution engine to soundly explore program paths and detect subtle spectre variant 1 and variant 2 vulnerabilities. We propose a dynamic pattern detection mechanism to account for both existing and future vulnerabilities. Our experimental results show the effectiveness and efficiency of Specognitor in analyzing real-world cryptographic programs w.r.t. different processor families.

Title: Explainable and Safe Reinforcement Learning for Autonomous Air Mobility. (arXiv:2211.13474v1 [cs.LG])

robust

Title: How do Cross-View and Cross-Modal Alignment Affect Representations in Contrastive Learning?. (arXiv:2211.13309v1 [cs.CV])

Title: Multi-Task Learning of Object State Changes from Uncurated Videos. (arXiv:2211.13500v1 [cs.CV])

Title: Chinese Character Recognition with Radical-Structured Stroke Trees. (arXiv:2211.13518v1 [cs.CV])

Title: 3D Dual-Fusion: Dual-Domain Dual-Query Camera-LiDAR Fusion for 3D Object Detection. (arXiv:2211.13529v1 [cs.CV])

Title: Cross-domain Transfer of defect features in technical domains based on partial target data. (arXiv:2211.13662v1 [cs.CV])

Title: On Pitfalls of Measuring Occlusion Robustness through Data Distortion. (arXiv:2211.13734v1 [cs.CV])

Title: TemporalStereo: Efficient Spatial-Temporal Stereo Matching Network. (arXiv:2211.13755v1 [cs.CV])

Title: Contrastive pretraining for semantic segmentation is robust to noisy positive pairs. (arXiv:2211.13756v1 [cs.CV])

Title: Towards Practical Control of Singular Values of Convolutional Layers. (arXiv:2211.13771v1 [cs.LG])

Title: Semantic Communication Enabling Robust Edge Intelligence for Time-Critical IoT Applications. (arXiv:2211.13787v1 [cs.CV])

Title: FFHQ-UV: Normalized Facial UV-Texture Dataset for 3D Face Reconstruction. (arXiv:2211.13874v1 [cs.CV])

Title: TAOTF: A Two-stage Approximately Orthogonal Training Framework in Deep Neural Networks. (arXiv:2211.13902v1 [cs.CV])

Title: Towards Good Practices for Missing Modality Robust Action Recognition. (arXiv:2211.13916v1 [cs.CV])

Title: SEAT: Stable and Explainable Attention. (arXiv:2211.13290v1 [cs.CL])

Title: Prototypical Fine-tuning: Towards Robust Performance Under Varying Data Sizes. (arXiv:2211.13638v1 [cs.CL])

Title: Competency-Aware Neural Machine Translation: Can Machine Translation Know its Own Translation Quality?. (arXiv:2211.13865v1 [cs.CL])

Title: Lempel-Ziv Networks. (arXiv:2211.13250v1 [cs.LG])

Title: Multiple Imputation with Neural Network Gaussian Process for High-dimensional Incomplete Data. (arXiv:2211.13297v1 [cs.LG])

Title: CoMadOut -- A Robust Outlier Detection Algorithm based on CoMAD. (arXiv:2211.13314v1 [cs.LG])

Title: Group SELFIES: A Robust Fragment-Based Molecular String Representation. (arXiv:2211.13322v1 [cs.LG])

Title: Robustness Analysis of Deep Learning Models for Population Synthesis. (arXiv:2211.13339v1 [cs.LG])

Title: Lifting Weak Supervision To Structured Prediction. (arXiv:2211.13375v1 [cs.LG])

Title: Collaborative Training of Medical Artificial Intelligence Models with non-uniform Labels. (arXiv:2211.13606v1 [cs.LG])

biometric

Title: Quality-Based Conditional Processing in Multi-Biometrics: Application to Sensor Interoperability. (arXiv:2211.13554v1 [cs.CR])

Title: Fingerprint Image-Quality Estimation and its Application to Multialgorithm Verification. (arXiv:2211.13557v1 [cs.CV])

Title: AFR-Net: Attention-Driven Fingerprint Recognition Network. (arXiv:2211.13897v1 [cs.CV])

steal

extraction

Title: Attention-based Feature Compression for CNN Inference Offloading in Edge Computing. (arXiv:2211.13745v1 [cs.CV])

Title: ReFace: Improving Clothes-Changing Re-Identification With Face Features. (arXiv:2211.13807v1 [cs.CV])

Title: Detecting Entities in the Astrophysics Literature: A Comparison of Word-based and Span-based Entity Recognition Methods. (arXiv:2211.13819v1 [cs.CL])

Title: Learning with Silver Standard Data for Zero-shot Relation Extraction. (arXiv:2211.13883v1 [cs.CL])

Title: MUSIED: A Benchmark for Event Detection from Multi-Source Heterogeneous Informal Texts. (arXiv:2211.13896v1 [cs.CL])

membership infer

federate

Title: Knowledge-Aware Federated Active Learning with Non-IID Data. (arXiv:2211.13579v1 [cs.LG])

Title: Federated Learning Hyper-Parameter Tuning from a System Perspective. (arXiv:2211.13656v1 [cs.LG])

fair

interpretability

Title: MEGAN: Multi-Explanation Graph Attention Network. (arXiv:2211.13236v1 [cs.LG])

Title: Towards Interpretable Anomaly Detection via Invariant Rule Mining. (arXiv:2211.13577v1 [cs.LG])

Title: ML Interpretability: Simple Isn't Easy. (arXiv:2211.13617v1 [cs.LG])

explainability

watermark

Title: Seeds Don't Lie: An Adaptive Watermarking Framework for Computer Vision Models. (arXiv:2211.13644v1 [cs.CV])

Title: CycleGANWM: A CycleGAN watermarking method for ownership verification. (arXiv:2211.13737v1 [cs.CR])

diffusion

Title: HouseDiffusion: Vector Floorplan Generation via a Diffusion Model with Discrete and Continuous Denoising. (arXiv:2211.13287v1 [cs.CV])

Title: Make-A-Story: Visual Memory Conditioned Consistent Story Generation. (arXiv:2211.13319v1 [cs.CV])

Title: Fast Sampling of Diffusion Models via Operator Learning. (arXiv:2211.13449v1 [cs.LG])

Title: Sketch-Guided Text-to-Image Diffusion Models. (arXiv:2211.13752v1 [cs.CV])

Title: DiffusionSDF: Conditional Generative Modeling of Signed Distance Functions. (arXiv:2211.13757v1 [cs.CV])

Title: Design of Turing Systems with Physics-Informed Neural Networks. (arXiv:2211.13464v1 [cs.LG])