secure

security

Title: Interruptions detection in video conferences. (arXiv:2303.02052v1 [cs.CV])

Title: INO at Factify 2: Structure Coherence based Multi-Modal Fact Verification. (arXiv:2303.01510v1 [cs.LG])

Title: A tool assisted methodology to harden programs against multi-faults injections. (arXiv:2303.01885v1 [cs.CR])

Title: Exploiting Input Sanitization for Regex Denial of Service. (arXiv:2303.01996v1 [cs.CR])

In this paper, we conduct the first black-box study measuring the extent of ReDoS vulnerabilities in live web services. We apply the Consistent Sanitization Assumption: that client-side sanitization logic, including regexes, is consistent with the sanitization logic on the server-side. We identify a service's regex-based input sanitization in its HTML forms or its API, find vulnerable regexes among these regexes, craft ReDoS probes, and pinpoint vulnerabilities. We analyzed the HTML forms of 1,000 services and the APIs of 475 services. Of these, 355 services publish regexes; 17 services publish unsafe regexes; and 6 services are vulnerable to ReDoS through their APIs (6 domains; 15 subdomains). Both Microsoft and Amazon Web Services patched their web services as a result of our disclosure. Since these vulnerabilities were from API specifications, not HTML forms, we proposed a ReDoS defense for a popular API validation library, and our patch has been merged. To summarize: in client-visible sanitization logic, some web services advertise ReDoS vulnerabilities in plain sight. Our results motivate short-term patches and long-term fundamental solutions.

privacy

Title: Differentially Private Neural Tangent Kernels for Privacy-Preserving Data Generation. (arXiv:2303.01687v1 [cs.LG])

Title: Exploring Machine Learning Privacy/Utility trade-off from a hyperparameters Lens. (arXiv:2303.01819v1 [cs.LG])

Title: GlucoSynth: Generating Differentially-Private Synthetic Glucose Traces. (arXiv:2303.01621v1 [cs.LG])

Title: Usability of Privacy Controls in Top Health Websites. (arXiv:2303.01838v1 [cs.CR])

Title: Summary Statistic Privacy in Data Sharing. (arXiv:2303.02014v1 [cs.CR])

protect

defense

Title: NCL: Textual Backdoor Defense Using Noise-augmented Contrastive Learning. (arXiv:2303.01742v1 [cs.CR])

attack

Title: AdvART: Adversarial Art for Camouflaged Object Detection Attacks. (arXiv:2303.01734v1 [cs.CV])

Title: Modeling and Exploration of Gain Competition Attacks in Optical Network-on-Chip Architectures. (arXiv:2303.01550v1 [cs.CR])

In this paper, we investigate the gain competition attack in optical NoCs, which can be initiated by an attacker injecting a high-power signal to the optical waveguide, robbing the legitimate signals of amplification. To the best of our knowledge, our proposed approach is the first attempt to investigate gain competition attacks as a security threat in optical NoCs. We model the attack and analyze its effects on optical NoC performance. We also propose potential attack detection techniques and countermeasures to mitigate the attack. Our experimental evaluation using different NoC topologies and diverse traffic patterns demonstrates the effectiveness of our modeling and exploration of gain competition attacks in optical NoC architectures.

Title: Backdoor for Debias: Mitigating Model Bias with Backdoor Attack-based Artificial Bias. (arXiv:2303.01504v1 [cs.LG])

robust

Title: Feature Perturbation Augmentation for Reliable Evaluation of Importance Estimators. (arXiv:2303.01538v1 [cs.LG])

Title: Counterfactual Edits for Generative Evaluation. (arXiv:2303.01555v1 [cs.CV])

Title: Improving GAN Training via Feature Space Shrinkage. (arXiv:2303.01559v1 [cs.CV])

Title: Towards Domain Generalization for Multi-view 3D Object Detection in Bird-Eye-View. (arXiv:2303.01686v1 [cs.CV])

Title: A Laplace-inspired Distribution on SO(3) for Probabilistic Rotation Estimation. (arXiv:2303.01743v1 [cs.CV])

Title: Revisiting Adversarial Training for ImageNet: Architectures, Training and Generalization across Threat Models. (arXiv:2303.01870v1 [cs.CV])

Title: Robust Detection Outcome: A Metric for Pathology Detection in Medical Images. (arXiv:2303.01920v1 [cs.CV])

Title: PointCert: Point Cloud Classification with Deterministic Certified Robustness Guarantees. (arXiv:2303.01959v1 [cs.CR])

Title: Data-Efficient Training of CNNs and Transformers with Coresets: A Stability Perspective. (arXiv:2303.02095v1 [cs.CV])

Title: Convex Bounds on the Softmax Function with Applications to Robustness Verification. (arXiv:2303.01713v1 [cs.LG])

Title: Robust One-Class Classification with Signed Distance Function using 1-Lipschitz Neural Networks. (arXiv:2303.01978v1 [cs.LG])

Title: Physics-Informed Deep Learning For Traffic State Estimation: A Survey and the Outlook. (arXiv:2303.02063v1 [cs.LG])

Title: Sparsity May Cry: Let Us Fail (Current) Sparse Neural Networks Together!. (arXiv:2303.02141v1 [cs.LG])

biometric

steal

extraction

membership infer

federate

Title: FedML Parrot: A Scalable Federated Learning System via Heterogeneity-aware Scheduling on Sequential and Hierarchical Training. (arXiv:2303.01778v1 [cs.LG])

fair

Title: Automatic Increase Market Systems (AIMS): Towards a deterministic theory for cryptocurrencies. (arXiv:2303.01735v1 [cs.CR])

To address the issues, this paper proposes a novel theory as Automatic Increase Market Systems (AIMS) for cryptos, which could potentially be designed to automatically adjust the value of a cryptocurrency helping to stabilize the price and increase its value over time in a deterministic manner. We build a crypto, WISH (https://wishbank.wtf), based on AIMS in order to demonstrate how the automatic increase market system would work in practice, and how it would influence the supply of the cryptocurrency in response to market demand and finally make itself to be a stable medium of exchange, ensuring that the AIMS is fair and transparent.

Title: Understanding and Unifying Fourteen Attribution Methods with Taylor Interactions. (arXiv:2303.01506v1 [cs.LG])

Title: Enhancing Fairness in AI-based Travel Demand Forecasting Models. (arXiv:2303.01692v1 [cs.LG])

Title: Model Explanation Disparities as a Fairness Diagnostic. (arXiv:2303.01704v1 [cs.LG])

Title: FairShap: A Data Re-weighting Approach for Algorithmic Fairness based on Shapley Values. (arXiv:2303.01928v1 [cs.LG])

interpretability

Title: BayeSeg: Bayesian Modeling for Medical Image Segmentation with Interpretable Generalizability. (arXiv:2303.01710v1 [cs.CV])

Title: PPCR: Learning Pyramid Pixel Context Recalibration Module for Medical Image Classification. (arXiv:2303.01917v1 [cs.CV])

Title: Artificial Intelligence for Dementia Research Methods Optimization. (arXiv:2303.01949v1 [cs.LG])

explainability

watermark

diffusion

Title: Generative Diffusions in Augmented Spaces: A Complete Recipe. (arXiv:2303.01748v1 [cs.LG])

Title: Word-As-Image for Semantic Typography. (arXiv:2303.01818v1 [cs.CV])

Title: Unleashing Text-to-Image Diffusion Models for Visual Perception. (arXiv:2303.02153v1 [cs.CV])

Title: Graph-based Extreme Feature Selection for Multi-class Classification Tasks. (arXiv:2303.01792v1 [cs.LG])

Title: Multi-Agent Adversarial Training Using Diffusion Learning. (arXiv:2303.01936v1 [cs.LG])