secure

Title: Turning Noises to Fingerprint-Free "Credentials": Secure and Usable Authentication for Drone Delivery. (arXiv:2302.09197v1 [cs.CR])

security

Title: Web Photo Source Identification based on Neural Enhanced Camera Fingerprint. (arXiv:2302.09228v1 [cs.CV])

Title: Vulnerability analysis of captcha using Deep learning. (arXiv:2302.09389v1 [cs.CR])

Title: Reproducing Random Forest Efficacy in Detecting Port Scanning. (arXiv:2302.09317v1 [cs.CR])

Title: Security of IT/OT Convergence: Design and Implementation Challenges. (arXiv:2302.09426v1 [cs.CR])

Title: Comprehensive Evaluation of RSB and Spectre Vulnerability on Modern Processors. (arXiv:2302.09544v1 [cs.CR])

privacy

Title: Digital Privacy Under Attack: Challenges and Enablers. (arXiv:2302.09258v1 [cs.CR])

Title: Dynamic Private Task Assignment under Differential Privacy. (arXiv:2302.09511v1 [cs.CR])

Title: Learning with Impartiality to Walk on the Pareto Frontier of Fairness, Privacy, and Utility. (arXiv:2302.09183v1 [cs.LG])

Title: Function Composition in Trustworthy Machine Learning: Implementation Choices, Insights, and Questions. (arXiv:2302.09190v1 [cs.LG])

Title: On Handling Catastrophic Forgetting for Incremental Learning of Human Physical Activity on the Edge. (arXiv:2302.09310v1 [cs.LG])

Title: Why Is Public Pretraining Necessary for Private Model Training?. (arXiv:2302.09483v1 [cs.LG])

protect

Title: Designing Equitable Algorithms. (arXiv:2302.09157v1 [cs.LG])

defense

Title: MorphGANFormer: Transformer-based Face Morphing and De-Morphing. (arXiv:2302.09404v1 [cs.CV])

attack

Title: Meta Style Adversarial Training for Cross-Domain Few-Shot Learning. (arXiv:2302.09309v1 [cs.CV])

Title: Deep Neural Networks based Meta-Learning for Network Intrusion Detection. (arXiv:2302.09394v1 [cs.LG])

Title: X-Adv: Physical Adversarial Object Attacks against X-ray Prohibited Item Detection. (arXiv:2302.09491v1 [cs.CR])

Title: RetVec: Resilient and Efficient Text Vectorizer. (arXiv:2302.09207v1 [cs.CL])

Title: Differential Aggregation against General Colluding Attackers. (arXiv:2302.09315v1 [cs.CR])

In this paper, we adopt a general opportunistic-and-colluding threat model and propose a multi-group Differential Aggregation Protocol (DAP) to improve the accuracy of mean estimation under LDP. Different from all existing works that detect poison values on individual basis, DAP mitigates the overall impact of poison values on the estimated mean. It relies on a new probing mechanism EMF (i.e., Expectation-Maximization Filter) to estimate features of the attackers. In addition to EMF, DAP also consists of two EMF post-processing procedures (EMF* and CEMF*), and a group-wise mean aggregation scheme to optimize the final estimated mean to achieve the smallest variance. Extensive experimental results on both synthetic and real-world datasets demonstrate the superior performance of DAP over state-of-the-art solutions.

Title: Backdoor Attacks to Pre-trained Unified Foundation Models. (arXiv:2302.09360v1 [cs.CR])

Title: RobustNLP: A Technique to Defend NLP Models Against Backdoor Attacks. (arXiv:2302.09420v1 [cs.CR])

Title: Adversarial Machine Learning: A Systematic Survey of Backdoor Attack, Weight Attack and Adversarial Example. (arXiv:2302.09457v1 [cs.LG])

robust

Title: A Review on Generative Adversarial Networks for Data Augmentation in Person Re-Identification Systems. (arXiv:2302.09119v1 [cs.CV])

Title: MedViT: A Robust Vision Transformer for Generalized Medical Image Classification. (arXiv:2302.09462v1 [cs.CV])

Title: Bounding the Capabilities of Large Language Models in Open Text Generation with Prompt Constraints. (arXiv:2302.09185v1 [cs.CL])

Title: How Good Are GPT Models at Machine Translation? A Comprehensive Evaluation. (arXiv:2302.09210v1 [cs.CL])

Title: Delving into the Adversarial Robustness of Federated Learning. (arXiv:2302.09479v1 [cs.LG])

Title: Smoothly Giving up: Robustness for Simple Models. (arXiv:2302.09114v1 [cs.LG])

Title: Stochastic Approximation Approaches to Group Distributionally Robust Optimization. (arXiv:2302.09267v1 [cs.LG])

Title: Effective Multimodal Reinforcement Learning with Modality Alignment and Importance Enhancement. (arXiv:2302.09318v1 [cs.LG])

biometric

steal

extraction

Title: Invertible Neural Skinning. (arXiv:2302.09227v1 [cs.CV])

Title: Hyneter: Hybrid Network Transformer for Object Detection. (arXiv:2302.09365v1 [cs.CV])

Title: MultiScale Probability Map guided Index Pooling with Attention-based learning for Road and Building Segmentation. (arXiv:2302.09411v1 [cs.CV])

Title: Extraction of Constituent Factors of Digestion Efficiency in Information Transfer by Media Composed of Texts and Images. (arXiv:2302.09189v1 [cs.CL])

Title: Optimising Human-Machine Collaboration for Efficient High-Precision Information Extraction from Text Documents. (arXiv:2302.09324v1 [cs.CL])

membership infer

federate

Title: A Federated Approach for Hate Speech Detection. (arXiv:2302.09243v1 [cs.LG])

fair

Title: Closed-Loop Transcription via Convolutional Sparse Coding. (arXiv:2302.09347v1 [cs.CV])

interpretability

Title: TAX: Tendency-and-Assignment Explainer for Semantic Segmentation with Multi-Annotators. (arXiv:2302.09561v1 [cs.CV])

Title: Interpretability in Activation Space Analysis of Transformers: A Focused Survey. (arXiv:2302.09304v1 [cs.CL])

explainability

watermark

diffusion

Title: Exploring the Representation Manifolds of Stable Diffusion Through the Lens of Intrinsic Dimension. (arXiv:2302.09301v1 [cs.CL])

Title: When Visible-to-Thermal Facial GAN Beats Conditional Diffusion. (arXiv:2302.09395v1 [cs.CV])

Title: Distributional Offline Policy Evaluation with Predictive Error Guarantees. (arXiv:2302.09456v1 [cs.LG])