secure

Title: FedSDG-FS: Efficient and Secure Feature Selection for Vertical Federated Learning. (arXiv:2302.10417v1 [cs.LG])

security

Title: Crop mapping in the small sample/no sample case: an approach using a two-level cascade classifier and integrating domain knowledge. (arXiv:2302.10270v1 [cs.CV])

Title: Exploring the Limits of Transfer Learning with Unified Model in the Cybersecurity Domain. (arXiv:2302.10346v1 [cs.CL])

Title: Few-shot Detection of Anomalies in Industrial Cyber-Physical System via Prototypical Network and Contrastive Learning. (arXiv:2302.10601v1 [cs.CR])

Title: A Survey of Trustworthy Federated Learning with Perspectives on Security, Robustness, and Privacy. (arXiv:2302.10637v1 [cs.LG])

privacy

Title: Speech Privacy Leakage from Shared Gradients in Distributed Learning. (arXiv:2302.10441v1 [cs.LG])

Title: FedSpeed: Larger Local Interval, Less Communication Round, and Higher Generalization Accuracy. (arXiv:2302.10429v1 [cs.LG])

protect

Title: Reliability Analysis of Vision Transformers. (arXiv:2302.10468v1 [cs.CR])

Title: ApproxABFT: Approximate Algorithm-Based Fault Tolerance for Vision Transformers. (arXiv:2302.10469v1 [cs.CR])

Title: MalProtect: Stateful Defense Against Adversarial Query Attacks in ML-based Malware Detection. (arXiv:2302.10739v1 [cs.LG])

Title: Scalable Infomin Learning. (arXiv:2302.10701v1 [cs.LG])

Title: Provable Copyright Protection for Generative Models. (arXiv:2302.10870v1 [cs.LG])

defense

Title: Potential Penetrative Pass (P3). (arXiv:2302.10760v1 [cs.LG])

attack

Title: Take Me Home: Reversing Distribution Shifts using Reinforcement Learning. (arXiv:2302.10341v1 [cs.LG])

Title: Hello Me, Meet the Real Me: Audio Deepfake Attacks on Voice Assistants. (arXiv:2302.10328v1 [cs.CR])

Title: Characterizing the Optimal 0-1 Loss for Multi-class Classification with a Test-time Attacker. (arXiv:2302.10722v1 [cs.LG])

Title: Generalization Bounds for Adversarial Contrastive Learning. (arXiv:2302.10633v1 [cs.LG])

robust

Title: Fast and Painless Image Reconstruction in Deep Image Prior Subspaces. (arXiv:2302.10279v1 [cs.CV])

Title: LiT Tuned Models for Efficient Species Detection. (arXiv:2302.10281v1 [cs.CV])

Title: OppLoD: the Opponency based Looming Detector, Model Extension of Looming Sensitivity from LGMD to LPLC2. (arXiv:2302.10284v1 [cs.CV])

Title: CertViT: Certified Robustness of Pre-Trained Vision Transformers. (arXiv:2302.10287v1 [cs.CV])

Title: Interpretable Out-Of-Distribution Detection Using Pattern Identification. (arXiv:2302.10303v1 [cs.CV])

Title: Automotive RADAR sub-sampling via object detection networks: Leveraging prior signal information. (arXiv:2302.10450v1 [cs.CV])

Title: Learning Gradually Non-convex Image Priors Using Score Matching. (arXiv:2302.10502v1 [cs.LG])

Title: MulGT: Multi-task Graph-Transformer with Task-aware Knowledge Injection and Domain Knowledge-driven Pooling for Whole Slide Image Analysis. (arXiv:2302.10574v1 [cs.CV])

Title: SU-Net: Pose estimation network for non-cooperative spacecraft on-orbit. (arXiv:2302.10602v1 [cs.CV])

Title: Effects of Architectures on Continual Semantic Segmentation. (arXiv:2302.10718v1 [cs.CV])

Title: Evaluating the Effectiveness of Pre-trained Language Models in Predicting the Helpfulness of Online Product Reviews. (arXiv:2302.10199v1 [cs.CL])

Title: Mask-guided BERT for Few Shot Text Classification. (arXiv:2302.10447v1 [cs.CL])

Title: Connecting Humanities and Social Sciences: Applying Language and Speech Technology to Online Panel Surveys. (arXiv:2302.10593v1 [cs.CL])

Title: On Robust Numerical Solver for ODE via Self-Attention Mechanism. (arXiv:2302.10184v1 [cs.LG])

Title: Active Learning with Positive and Negative Pairwise Feedback. (arXiv:2302.10295v1 [cs.LG])

Title: Understanding the effect of varying amounts of replay per step. (arXiv:2302.10311v1 [cs.LG])

Title: Weather2K: A Multivariate Spatio-Temporal Benchmark Dataset for Meteorological Forecasting Based on Real-Time Observation Data from Ground Weather Stations. (arXiv:2302.10493v1 [cs.LG])

Title: UAV Path Planning Employing MPC- Reinforcement Learning Method for search and rescue mission. (arXiv:2302.10669v1 [cs.LG])

Title: Hybridization of K-means with improved firefly algorithm for automatic clustering in high dimension. (arXiv:2302.10765v1 [cs.LG])

Title: Utilizing Domain Knowledge: Robust Machine Learning for Building Energy Prediction with Small, Inconsistent Datasets. (arXiv:2302.10784v1 [cs.LG])

Title: Benchmarking sparse system identification with low-dimensional chaos. (arXiv:2302.10787v1 [cs.LG])

Title: A Novel Noise Injection-based Training Scheme for Better Model Robustness. (arXiv:2302.10802v1 [cs.LG])

Title: Minimax-Bayes Reinforcement Learning. (arXiv:2302.10831v1 [cs.LG])

Title: Some Fundamental Aspects about Lipschitz Continuity of Neural Network Functions. (arXiv:2302.10886v1 [cs.LG])

biometric

Title: Combining Blockchain and Biometrics: A Survey on Technical Aspects and a First Legal Analysis. (arXiv:2302.10883v1 [cs.CV])

Title: Criminal Investigation Tracker with Suspect Prediction using Machine Learning. (arXiv:2302.10423v1 [cs.LG])

steal

extraction

Title: DrasCLR: A Self-supervised Framework of Learning Disease-related and Anatomy-specific Representation for 3D Medical Images. (arXiv:2302.10390v1 [cs.CV])

Title: Few-Shot Point Cloud Semantic Segmentation via Contrastive Self-Supervision and Multi-Resolution Attention. (arXiv:2302.10501v1 [cs.CV])

Title: Zero-Shot Information Extraction via Chatting with ChatGPT. (arXiv:2302.10205v1 [cs.CL])

Title: SparCA: Sparse Compressed Agglomeration for Feature Extraction and Dimensionality Reduction. (arXiv:2302.10776v1 [cs.LG])

membership infer

federate

Title: CADIS: Handling Cluster-skewed Non-IID Data in Federated Learning with Clustered Aggregation and Knowledge DIStilled Regularization. (arXiv:2302.10413v1 [cs.LG])

Title: FedST: Federated Shapelet Transformation for Interpretable Time Series Classification. (arXiv:2302.10631v1 [cs.LG])

Title: Clustered Data Sharing for Non-IID Federated Learning over Wireless Networks. (arXiv:2302.10747v1 [cs.LG])

Title: Federated Gradient Matching Pursuit. (arXiv:2302.10755v1 [cs.LG])

Title: Distributed Learning in Heterogeneous Environment: federated learning with adaptive aggregation and computation reduction. (arXiv:2302.10757v1 [cs.LG])

fair

Title: Multivariate Systemic Risk Measures and Deep Learning Algorithms. (arXiv:2302.10183v1 [cs.LG])

Title: A Unifying Perspective on Multi-Calibration: Unleashing Game Dynamics for Multi-Objective Learning. (arXiv:2302.10863v1 [cs.LG])

interpretability

Title: Can Large Language Models Change User Preference Adversarially?. (arXiv:2302.10291v1 [cs.CL])

Title: Tell Model Where to Attend: Improving Interpretability of Aspect-Based Sentiment Classification via Small Explanation Annotations. (arXiv:2302.10479v1 [cs.CL])

Title: Parallel Sentence-Level Explanation Generation for Real-World Low-Resource Scenarios. (arXiv:2302.10707v1 [cs.CL])

Title: On Inductive Biases for Machine Learning in Data Constrained Settings. (arXiv:2302.10692v1 [cs.LG])

explainability

Title: Route, Interpret, Repeat: Blurring the Line Between Post hoc Explainability and Interpretable Models. (arXiv:2302.10289v1 [cs.LG])

watermark

Title: On Function-Coupled Watermarks for Deep Neural Networks. (arXiv:2302.10296v1 [cs.CV])

In this paper, we propose a novel DNN watermarking solution that can effectively defend against the above attacks. Our key insight is to enhance the coupling of the watermark and model functionalities such that removing the watermark would inevitably degrade the model's performance on normal inputs. To this end, unlike previous methods relying on secret features learnt from out-of-distribution data, our method only uses features learnt from in-distribution data. Specifically, on the one hand, we propose to sample inputs from the original training dataset and fuse them as watermark triggers. On the other hand, we randomly mask model weights during training so that the information of our embedded watermarks spreads in the network. By doing so, model fine-tuning/pruning would not forget our function-coupled watermarks. Evaluation results on various image classification tasks show a 100\% watermark authentication success rate under aggressive watermark removal attacks, significantly outperforming existing solutions. Code is available: https://github.com/cure-lab/Function-Coupled-Watermark.

diffusion

Title: Analyzing Multimodal Objectives Through the Lens of Generative Diffusion Guidance. (arXiv:2302.10305v1 [cs.CV])

Title: Unsupervised Out-of-Distribution Detection with Diffusion Inpainting. (arXiv:2302.10326v1 [cs.CV])

Title: Diffusion Models and Semi-Supervised Learners Benefit Mutually with Few Labels. (arXiv:2302.10586v1 [cs.CV])

Title: RealFusion: 360{\deg} Reconstruction of Any Object from a Single Image. (arXiv:2302.10663v1 [cs.CV])

Title: $PC^2$: Projection-Conditioned Point Cloud Diffusion for Single-Image 3D Reconstruction. (arXiv:2302.10668v1 [cs.CV])

Title: On Calibrating Diffusion Probabilistic Models. (arXiv:2302.10688v1 [cs.LG])

Title: Learning 3D Photography Videos via Self-supervised Diffusion on Single Images. (arXiv:2302.10781v1 [cs.CV])

Title: Diffusion Probabilistic Models for Graph-Structured Prediction. (arXiv:2302.10506v1 [cs.LG])