secure

Title: CryptoScratch: Developing and evaluating a block-based programming tool for teaching K-12 cryptography education using Scratch. (arXiv:2302.11606v1 [cs.CR])

Title: ProSpeCT: Provably Secure Speculation for the Constant-Time Policy (Extended version). (arXiv:2302.12108v1 [cs.CR])

In addition to the formal model, we provide a prototype hardware implementation of ProSpeCT on a RISC-V processor and show evidence of its low impact on hardware cost, performance, and required software changes. In particular, the experimental evaluation confirms our expectation that for a compliant constant-time binary, enabling ProSpeCT incurs no performance overhead.

Title: A Survey of Secure Computation Using Trusted Execution Environments. (arXiv:2302.12150v1 [cs.CR])

Title: Harris Hawks Feature Selection in Distributed Machine Learning for Secure IoT Environments. (arXiv:2302.12205v1 [cs.LG])

Title: Knowledge Distillation-based Information Sharing for Online Process Monitoring in Decentralized Manufacturing System. (arXiv:2302.12004v1 [cs.LG])

security

Title: Designing a Visual Cryptography Curriculum for K-12 Education. (arXiv:2302.11655v1 [cs.CR])

Title: Out-of-distribution Detection with Energy-based Models. (arXiv:2302.12002v1 [cs.LG])

Title: Financial Distress Prediction For Small And Medium Enterprises Using Machine Learning Techniques. (arXiv:2302.12118v1 [cs.LG])

privacy

Title: A Comprehensive Survey on Source-free Domain Adaptation. (arXiv:2302.11803v1 [cs.LG])

Title: On the contribution of pre-trained models to accuracy and utility in modeling distributed energy resources. (arXiv:2302.11679v1 [cs.LG])

Title: Personalized Privacy-Preserving Framework for Cross-Silo Federated Learning. (arXiv:2302.12020v1 [cs.LG])

protect

Title: Bayesian Structure Scores for Probabilistic Circuits. (arXiv:2302.12130v1 [cs.LG])

defense

Title: VDHLA: Variable Depth Hybrid Learning Automaton and Its Application to Defense Against the Selfish Mining Attack in Bitcoin. (arXiv:2302.12096v1 [cs.LG])

Title: Feature Partition Aggregation: A Fast Certified Defense Against a Union of Sparse Adversarial Attacks. (arXiv:2302.11628v1 [cs.LG])

attack

Title: Boosting Adversarial Transferability using Dynamic Cues. (arXiv:2302.12252v1 [cs.CV])

Title: More than you've asked for: A Comprehensive Analysis of Novel Prompt Injection Threats to Application-Integrated Large Language Models. (arXiv:2302.12173v1 [cs.CR])

In this work, we show that augmenting LLMs with retrieval and API calling capabilities (so-called Application-Integrated LLMs) induces a whole new set of attack vectors. These LLMs might process poisoned content retrieved from the Web that contains malicious prompts pre-injected and selected by adversaries. We demonstrate that an attacker can indirectly perform such PI attacks. Based on this key insight, we systematically analyze the resulting threat landscape of Application-Integrated LLMs and discuss a variety of new attack vectors. To demonstrate the practical viability of our attacks, we implemented specific demonstrations of the proposed attacks within synthetic applications. In summary, our work calls for an urgent evaluation of current mitigation techniques and an investigation of whether new techniques are needed to defend LLMs against these threats.

Title: Mitigating Adversarial Attacks in Deepfake Detection: An Exploration of Perturbation and AI Techniques. (arXiv:2302.11704v1 [cs.LG])

Title: A Plot is Worth a Thousand Words: Model Information Stealing Attacks via Scientific Plots. (arXiv:2302.11982v1 [cs.CR])

robust

Title: Deep OC-SORT: Multi-Pedestrian Tracking by Adaptive Re-Identification. (arXiv:2302.11813v1 [cs.CV])

Title: Out-of-Domain Robustness via Targeted Augmentations. (arXiv:2302.11861v1 [cs.LG])

Title: Transformers in Single Object Tracking: An Experimental Survey. (arXiv:2302.11867v1 [cs.CV])

Title: Real-Time Damage Detection in Fiber Lifting Ropes Using Convolutional Neural Networks. (arXiv:2302.11947v1 [cs.CV])

Title: ArtiFact: A Large-Scale Dataset with Artificial and Factual Images for Generalizable and Robust Synthetic Image Detection. (arXiv:2302.11970v1 [cs.CV])

Title: Unsupervised Domain Adaptation via Distilled Discriminative Clustering. (arXiv:2302.11984v1 [cs.CV])

Title: Domain Generalisation via Domain Adaptation: An Adversarial Fourier Amplitude Approach. (arXiv:2302.12047v1 [cs.LG])

Title: Change is Hard: A Closer Look at Subpopulation Shift. (arXiv:2302.12254v1 [cs.LG])

Title: Does Deep Learning Learn to Abstract? A Systematic Probing Framework. (arXiv:2302.11978v1 [cs.LG])

Title: Asymptotically Unbiased Off-Policy Policy Evaluation when Reusing Old Data in Nonstationary Environments. (arXiv:2302.11725v1 [cs.LG])

Title: FTM: A Frame-level Timeline Modeling Method for Temporal Graph Representation Learning. (arXiv:2302.11814v1 [cs.LG])

Title: Diverse Policy Optimization for Structured Action Space. (arXiv:2302.11917v1 [cs.LG])

Title: Investigating Catastrophic Overfitting in Fast Adversarial Training: A Self-fitting Perspective. (arXiv:2302.11963v1 [cs.LG])

Title: Robust Representation Learning by Clustering with Bisimulation Metrics for Visual Reinforcement Learning with Distractions. (arXiv:2302.12003v1 [cs.LG])

Title: Gaussian Switch Sampling: A Second Order Approach to Active Learning. (arXiv:2302.12018v1 [cs.LG])

Title: Online Calibrated Regression for Adversarially Robust Forecasting. (arXiv:2302.12196v1 [cs.LG])

biometric

steal

extraction

Title: RSFDM-Net: Real-time Spatial and Frequency Domains Modulation Network for Underwater Image Enhancement. (arXiv:2302.12186v1 [cs.CV])

Title: Coarse-to-Fine Knowledge Selection for Document Grounded Dialogs. (arXiv:2302.11849v1 [cs.CL])

Title: LightCTS: A Lightweight Framework for Correlated Time Series Forecasting. (arXiv:2302.11974v1 [cs.LG])

Title: Detection of Epilepsy Seizure using Different Dimensionality Reduction Techniques and Machine Learning on Transform Domain. (arXiv:2302.12012v1 [cs.LG])

membership infer

federate

Title: Federated Nearest Neighbor Machine Translation. (arXiv:2302.12211v1 [cs.CL])

Title: Data-Free Diversity-Based Ensemble Selection For One-Shot Federated Learning in Machine Learning Model Market. (arXiv:2302.11751v1 [cs.LG])

Title: FedIL: Federated Incremental Learning from Decentralized Unlabeled Data with Convergence Analysis. (arXiv:2302.11823v1 [cs.LG])

Title: Personalized Decentralized Federated Learning with Knowledge Distillation. (arXiv:2302.12156v1 [cs.LG])

fair

Title: The Geometry of Mixability. (arXiv:2302.11905v1 [cs.LG])

interpretability

Title: Concept Learning for Interpretable Multi-Agent Reinforcement Learning. (arXiv:2302.12232v1 [cs.LG])

explainability

Title: Dermatological Diagnosis Explainability Benchmark for Convolutional Neural Networks. (arXiv:2302.12084v1 [cs.CV])

Title: Local and Global Explainability Metrics for Machine Learning Predictions. (arXiv:2302.12094v1 [cs.LG])

watermark

diffusion

Title: Controlled and Conditional Text to Image Generation with Diffusion Prior. (arXiv:2302.11710v1 [cs.CV])

Title: Region-Aware Diffusion for Zero-shot Text-driven Image Editing. (arXiv:2302.11797v1 [cs.CV])

Title: Designing an Encoder for Fast Personalization of Text-to-Image Models. (arXiv:2302.12228v1 [cs.CV])

Title: DiffusioNeRF: Regularizing Neural Radiance Fields with Denoising Diffusion Models. (arXiv:2302.12231v1 [cs.CV])

To alleviate this problem we learn a prior over scene geometry and color, using a denoising diffusion model (DDM). Our DDM is trained on RGBD patches of the synthetic Hypersim dataset and can be used to predict the gradient of the logarithm of a joint probability distribution of color and depth patches. We show that, during NeRF training, these gradients of logarithms of RGBD patch priors serve to regularize geometry and color for a scene. During NeRF training, random RGBD patches are rendered and the estimated gradients of the log-likelihood are backpropagated to the color and density fields. Evaluations on LLFF, the most relevant dataset, show that our learned prior achieves improved quality in the reconstructed geometry and improved generalization to novel views. Evaluations on DTU show improved reconstruction quality among NeRF methods.