secure

Title: An Effective and Differentially Private Protocol for Secure Distributed Cardinality Estimation. (arXiv:2302.02158v1 [cs.CR])

Title: RRNet: Towards ReLU-Reduced Neural Network for Two-party Computation Based Private Inference. (arXiv:2302.02292v1 [cs.CR])

security

Title: IoT Botnet Detection Using an Economic Deep Learning Model. (arXiv:2302.02013v1 [cs.CR])

Title: Detecting Security Patches via Behavioral Data in Code Repositories. (arXiv:2302.02112v1 [cs.CR])

Title: A theoretical basis for Blockchain Extractable Value. (arXiv:2302.02154v1 [cs.CR])

privacy

Title: Human-Imperceptible Identification with Learnable Lensless Imaging. (arXiv:2302.02255v1 [cs.CV])

protect

Title: Towards Scalable EM-based Anomaly Detection For Embedded Devices Through Synthetic Fingerprinting. (arXiv:2302.02324v1 [cs.CR])

Title: GAN-based federated learning for label protection in binary classification. (arXiv:2302.02245v1 [cs.LG])

defense

Title: TextShield: Beyond Successfully Detecting Adversarial Sentences in Text Classification. (arXiv:2302.02023v1 [cs.CL])

Title: DeTorrent: An Adversarial Padding-only Traffic Analysis Defense. (arXiv:2302.02012v1 [cs.CR])

There are a variety of existing defenses, but most are either ineffective, incur high latency and bandwidth overhead, or require additional infrastructure. As a result, we aim to design a traffic analysis defense that is efficient and highly resistant to both WF and FC attacks. We propose DeTorrent, which uses competing neural networks to generate and evaluate traffic analysis defenses that insert 'dummy' traffic into real traffic flows. DeTorrent operates with moderate overhead and without delaying traffic. In a closed-world WF setting, it reduces an attacker's accuracy by 60.5%, a reduction 9.5% better than the next-best padding-only defense. Against the state-of-the-art FC attacker, DeTorrent reduces the true positive rate for a $10^{-4}$ false positive rate to about .30, which is less than half that of the next-best defense. We also demonstrate DeTorrent's practicality by deploying it alongside the Tor network and find that it maintains its performance when applied to live traffic.

Title: Run-Off Election: Improved Provable Defense against Data Poisoning Attacks. (arXiv:2302.02300v1 [cs.LG])

attack

Title: CosPGD: a unified white-box adversarial attack for pixel-wise prediction tasks. (arXiv:2302.02213v1 [cs.CV])

Title: A Minimax Approach Against Multi-Armed Adversarial Attacks Detection. (arXiv:2302.02216v1 [cs.CV])

Title: DCA: Delayed Charging Attack on the Electric Shared Mobility System. (arXiv:2302.01972v1 [cs.CR])

Title: BarrierBypass: Out-of-Sight Clean Voice Command Injection Attacks through Physical Barriers. (arXiv:2302.02042v1 [cs.CR])

Title: AUTOLYCUS: Exploiting Explainable AI (XAI) for Model Extraction Attacks against Decision Tree Models. (arXiv:2302.02162v1 [cs.LG])

Title: Resilient Consensus Sustained Collaboratively. (arXiv:2302.02325v1 [cs.CR])

Title: Unsupervised Ensemble Methods for Anomaly Detection in PLC-based Process Control. (arXiv:2302.02097v1 [cs.LG])

Title: Conformalized semi-supervised random forest for classification and abnormality detection. (arXiv:2302.02237v1 [cs.LG])

robust

Title: Guaranteed Tensor Recovery Fused Low-rankness and Smoothness. (arXiv:2302.02155v1 [cs.LG])

Title: Laplacian ICP for Progressive Registration of 3D Human Head Meshes. (arXiv:2302.02194v1 [cs.CV])

Title: Oscillation-free Quantization for Low-bit Vision Transformers. (arXiv:2302.02210v1 [cs.CV])

Title: A Disparity Refinement Framework for Learning-based Stereo Matching Methods in Cross-domain Setting for Laparoscopic Images. (arXiv:2302.02294v1 [cs.CV])

Methods: Maintaining robustness and improving the accuracy of learning-based methods are still open problems. To overcome the limitations of learning-based methods, we propose a disparity refinement framework consisting of a local disparity refinement method and a global disparity refinement method to improve the results of learning-based stereo matching methods in a cross-domain setting. Those learning-based stereo matching methods are pre-trained on a large public dataset of natural images and are tested on two datasets of laparoscopic images.

Results: Qualitative and quantitative results suggest that our proposed disparity framework can effectively refine disparity maps when they are noise-corrupted on an unseen dataset, without compromising prediction accuracy when the network can generalize well on an unseen dataset.

Conclusion: Our proposed disparity refinement framework could work with learning-based methods to achieve robust and accurate disparity prediction. Yet, as a large laparoscopic dataset for training learning-based methods does not exist and the generalization ability of networks remains to be improved, the incorporation of the proposed disparity refinement framework into existing networks will contribute to improving their overall accuracy and robustness associated with depth estimation.

Title: Semi-Supervised Domain Adaptation with Source Label Adaptation. (arXiv:2302.02335v1 [cs.CV])

Title: How Many and Which Training Points Would Need to be Removed to Flip this Prediction?. (arXiv:2302.02169v1 [cs.LG])

Title: Asymmetric Certified Robustness via Feature-Convex Neural Networks. (arXiv:2302.01961v1 [cs.LG])

Title: Robust Budget Pacing with a Single Sample. (arXiv:2302.02006v1 [cs.LG])

Title: Interpolation for Robust Learning: Data Augmentation on Geodesics. (arXiv:2302.02092v1 [cs.LG])

Title: Certified Robust Control under Adversarial Perturbations. (arXiv:2302.02208v1 [cs.LG])

biometric

steal

extraction

Title: GDB: Gated convolutions-based Document Binarization. (arXiv:2302.02073v1 [cs.CV])

Title: This Intestine Does Not Exist: Multiscale Residual Variational Autoencoder for Realistic Wireless Capsule Endoscopy Image Generation. (arXiv:2302.02150v1 [cs.CV])

Title: Variational multichannel multiclass segmentation\endgraf using unsupervised lifting with CNNs. (arXiv:2302.02214v1 [cs.CV])

Title: CLiNet: Joint Detection of Road Network Centerlines in 2D and 3D. (arXiv:2302.02259v1 [cs.CV])

Title: FGSI: Distant Supervision for Relation Extraction method based on Fine-Grained Semantic Information. (arXiv:2302.02078v1 [cs.CL])

membership infer

federate

Title: Heterogeneous Federated Knowledge Graph Embedding Learning and Unlearning. (arXiv:2302.02069v1 [cs.LG])

Title: FedSpectral+: Spectral Clustering using Federated Learning. (arXiv:2302.02137v1 [cs.LG])

Title: Federated Temporal Difference Learning with Linear Function Approximation under Environmental Heterogeneity. (arXiv:2302.02212v1 [cs.LG])

fair

Title: Matrix Estimation for Individual Fairness. (arXiv:2302.02096v1 [cs.LG])

Title: Fair Spatial Indexing: A paradigm for Group Spatial Fairness. (arXiv:2302.02306v1 [cs.LG])

Title: Improving Fair Training under Correlation Shifts. (arXiv:2302.02323v1 [cs.LG])

interpretability

Title: Improving Interpretability via Explicit Word Interaction Graph Layer. (arXiv:2302.02016v1 [cs.CL])

Title: Fixed-kinetic Neural Hamiltonian Flows for enhanced interpretability and reduced complexity. (arXiv:2302.01955v1 [cs.LG])

Title: SPARLING: Learning Latent Representations with Extremely Sparse Activations. (arXiv:2302.01976v1 [cs.LG])

Title: Structural Explanations for Graph Neural Networks using HSIC. (arXiv:2302.02139v1 [cs.LG])

Title: Augmenting Interpretable Knowledge Tracing by Ability Attribute and Attention Mechanism. (arXiv:2302.02146v1 [cs.LG])

explainability

Title: A New cross-domain strategy based XAI models for fake news detection. (arXiv:2302.02122v1 [cs.CL])

watermark

diffusion

Title: Semantic Diffusion Network for Semantic Segmentation. (arXiv:2302.02057v1 [cs.CV])

Title: Semantic-Guided Image Augmentation with Pre-trained Models. (arXiv:2302.02070v1 [cs.CV])

Title: Divide and Compose with Score Based Generative Models. (arXiv:2302.02272v1 [cs.CV])

Title: Design Booster: A Text-Guided Diffusion Model for Image Translation with Spatial Layout Preservation. (arXiv:2302.02284v1 [cs.CV])

Title: ReDi: Efficient Learning-Free Diffusion Inference via Trajectory Retrieval. (arXiv:2302.02285v1 [cs.CV])

Title: ShiftDDPMs: Exploring Conditional Diffusion Models by Shifting Diffusion Trajectories. (arXiv:2302.02373v1 [cs.CV])

Title: SE(3) diffusion model with application to protein backbone generation. (arXiv:2302.02277v1 [cs.LG])