secure

Title: Building Resilient Web 3.0 with Quantum Information Technologies and Blockchain: An Ambilateral View. (arXiv:2303.13050v1 [cs.CR])

Title: BlockFW -- Towards Blockchain-based Rule-Sharing Firewall. (arXiv:2303.13073v1 [cs.CR])

security

Title: Real-World Community-in-the-Loop Smart Video Surveillance -- A Case Study at a Community College. (arXiv:2303.12934v1 [cs.CV])

Title: Cryptocurrency wallets: assessment and security. (arXiv:2303.12940v1 [cs.CR])

Title: Feature Reduction Method Comparison Towards Explainability and Efficiency in Cybersecurity Intrusion Detection Systems. (arXiv:2303.12891v1 [cs.LG])

Title: A Survey on Explainable Artificial Intelligence for Network Cybersecurity. (arXiv:2303.12942v1 [cs.CR])

Title: Security Analysis on Social Media Networks via STRIDE Model. (arXiv:2303.13075v1 [cs.CR])

Title: Failure-tolerant Distributed Learning for Anomaly Detection in Wireless Networks. (arXiv:2303.13015v1 [cs.LG])

privacy

Title: Disguise without Disruption: Utility-Preserving Face De-Identification. (arXiv:2303.13269v1 [cs.CV])

Title: Practical and Ethical Challenges of Large Language Models in Education: A Systematic Literature Review. (arXiv:2303.13379v1 [cs.CL])

Title: Development and validation of a natural language processing algorithm to pseudonymize documents in the context of a clinical data warehouse. (arXiv:2303.13451v1 [cs.CL])

Title: Stability is Stable: Connections between Replicability, Privacy, and Adaptive Generalization. (arXiv:2303.12921v1 [cs.LG])

In this work, we establish new connections and separations between replicability and standard notions of algorithmic stability. In particular, we give sample-efficient algorithmic reductions between perfect generalization, approximate differential privacy, and replicability for a broad class of statistical problems. Conversely, we show any such equivalence must break down computationally: there exist statistical problems that are easy under differential privacy, but that cannot be solved replicably without breaking public-key cryptography. Furthermore, these results are tight: our reductions are statistically optimal, and we show that any computational separation between DP and replicability must imply the existence of one-way functions.

Our statistical reductions give a new algorithmic framework for translating between notions of stability, which we instantiate to answer several open questions in replicability and privacy. This includes giving sample-efficient replicable algorithms for various PAC learning, distribution estimation, and distribution testing problems, algorithmic amplification of $\delta$ in approximate DP, conversions from item-level to user-level privacy, and the existence of private agnostic-to-realizable learning reductions under structured distributions.

Title: A Privacy-Preserving Energy Theft Detection Model for Effective Demand-Response Management in Smart Grids. (arXiv:2303.13204v1 [cs.CR])

protect

defense

Title: Test-time Defense against Adversarial Attacks: Detection and Reconstruction of Adversarial Examples via Masked Autoencoder. (arXiv:2303.12848v1 [cs.CV])

Title: Backdoor Defense via Adaptively Splitting Poisoned Dataset. (arXiv:2303.12993v1 [cs.CV])

Title: Don't FREAK Out: A Frequency-Inspired Approach to Detecting Backdoor Poisoned Samples in DNNs. (arXiv:2303.13211v1 [cs.CR])

Title: Paraphrasing evades detectors of AI-generated text, but retrieval is an effective defense. (arXiv:2303.13408v1 [cs.CL])

attack

Title: Semantic Image Attack for Visual Model Diagnosis. (arXiv:2303.13010v1 [cs.CV])

Title: Watch Out for the Confusing Faces: Detecting Face Swapping with the Probability Distribution of Face Identification Models. (arXiv:2303.13131v1 [cs.CV])

Title: Managing Cyber Risk, a Science in the Making. (arXiv:2303.12939v1 [cs.CR])

Title: Deep Attention Recognition for Attack Identification in 5G UAV scenarios: Novel Architecture and End-to-End Evaluation. (arXiv:2303.12947v1 [cs.CR])

Title: Connected Superlevel Set in (Deep) Reinforcement Learning and its Application to Minimax Theorems. (arXiv:2303.12981v1 [cs.LG])

We present an application of the connectedness of these superlevel sets to the derivation of minimax theorems for robust reinforcement learning. We show that any minimax optimization program which is convex on one side and is equiconnected on the other side observes the minimax equality (i.e. has a Nash equilibrium). We find that this exact structure is exhibited by an interesting robust reinforcement learning problem under an adversarial reward attack, and the validity of its minimax equality immediately follows. This is the first time such a result is established in the literature.

Title: Decentralized Adversarial Training over Graphs. (arXiv:2303.13326v1 [cs.LG])

robust

Title: NVAutoNet: Fast and Accurate 360$^{\circ}$ 3D Perception For Self Driving. (arXiv:2303.12976v1 [cs.CV])

Title: Benchmarking the Reliability of Post-training Quantization: a Particular Focus on Worst-case Performance. (arXiv:2303.13003v1 [cs.LG])

Title: Top-Down Visual Attention from Analysis by Synthesis. (arXiv:2303.13043v1 [cs.CV])

Title: PanoHead: Geometry-Aware 3D Full-Head Synthesis in 360$^{\circ}$. (arXiv:2303.13071v1 [cs.CV])

Title: Robust Generalization against Photon-Limited Corruptions via Worst-Case Sharpness Minimization. (arXiv:2303.13087v1 [cs.CV])

Title: CP$^3$: Channel Pruning Plug-in for Point-based Networks. (arXiv:2303.13097v1 [cs.CV])

Title: Laplacian Segmentation Networks: Improved Epistemic Uncertainty from Spatial Aleatoric Uncertainty. (arXiv:2303.13123v1 [cs.CV])

Title: Calibrated Out-of-Distribution Detection with a Generic Representation. (arXiv:2303.13148v1 [cs.CV])

Title: VADER: Video Alignment Differencing and Retrieval. (arXiv:2303.13193v1 [cs.CV])

Title: Transforming Radiance Field with Lipschitz Network for Photorealistic 3D Scene Stylization. (arXiv:2303.13232v1 [cs.CV])

Title: Optimization and Optimizers for Adversarial Robustness. (arXiv:2303.13401v1 [cs.LG])

Title: Egocentric Audio-Visual Object Localization. (arXiv:2303.13471v1 [cs.CV])

Title: Position-Guided Point Cloud Panoptic Segmentation Transformer. (arXiv:2303.13509v1 [cs.CV])

Title: Towards Understanding the Generalization of Medical Text-to-SQL Models and Datasets. (arXiv:2303.12898v1 [cs.CL])

Title: Analyzing the Generalizability of Deep Contextualized Language Representations For Text Classification. (arXiv:2303.12936v1 [cs.CL])

Title: Adversarial Robustness of Learning-based Static Malware Classifiers. (arXiv:2303.13372v1 [cs.CR])

Title: Robust Consensus in Ranking Data Analysis: Definitions, Properties and Computational Issues. (arXiv:2303.12878v1 [cs.LG])

Title: Revisiting the Fragility of Influence Functions. (arXiv:2303.12922v1 [cs.LG])

Title: A Closer Look at Model Adaptation using Feature Distortion and Simplicity Bias. (arXiv:2303.13500v1 [cs.LG])

biometric

Title: Considerations on the Evaluation of Biometric Quality Assessment Algorithms. (arXiv:2303.13294v1 [cs.CV])

This paper discusses and analyses various details for this kind of quality assessment algorithm evaluation, including general EDC properties, interpretability improvements for pAUC values based on a hard lower error limit and a soft upper error limit, the use of relative instead of discrete rankings, stepwise vs. linear curve interpolation, and normalisation of quality scores to a [0, 100] integer range. We also analyse the stability of quantitative quality assessment algorithm rankings based on pAUC values across varying pAUC discard fraction limits and starting errors, concluding that higher pAUC discard fraction limits should be preferred. The analyses are conducted both with synthetic data and with real data for a face image quality assessment scenario, with a focus on general modality-independent conclusions for EDC evaluations.

steal

extraction

Title: Modeling Entities as Semantic Points for Visual Information Extraction in the Wild. (arXiv:2303.13095v1 [cs.CV])

Title: Complementary Pseudo Multimodal Feature for Point Cloud Anomaly Detection. (arXiv:2303.13194v1 [cs.CV])

Title: Leveraging Foundation Models for Clinical Text Analysis. (arXiv:2303.13314v1 [cs.CL])

Title: W2KPE: Keyphrase Extraction with Word-Word Relation. (arXiv:2303.13463v1 [cs.CL])

Title: A Comparison of Graph Neural Networks for Malware Classification. (arXiv:2303.12812v1 [cs.LG])

membership infer

federate

Title: Use of Federated Learning and Blockchain towards Securing Financial Services. (arXiv:2303.12944v1 [cs.CR])

Title: Automated Federated Learning in Mobile Edge Networks -- Fast Adaptation and Convergence. (arXiv:2303.12999v1 [cs.LG])

Title: FedGH: Heterogeneous Federated Learning with Generalized Global Header. (arXiv:2303.13137v1 [cs.LG])

Title: FS-Real: Towards Real-World Cross-Device Federated Learning. (arXiv:2303.13363v1 [cs.LG])

fair

Title: Box-Level Active Detection. (arXiv:2303.13089v1 [cs.CV])

Under the proposed box-level setting, we devise a novel pipeline, namely Complementary Pseudo Active Strategy (ComPAS). It exploits both human annotations and the model intelligence in a complementary fashion: an efficient input-end committee queries labels for informative objects only; meantime well-learned targets are identified by the model and compensated with pseudo-labels. ComPAS consistently outperforms 10 competitors under 4 settings in a unified codebase. With supervision from labeled data only, it achieves 100% supervised performance of VOC0712 with merely 19% box annotations. On the COCO dataset, it yields up to 4.3% mAP improvement over the second-best method. ComPAS also supports training with the unlabeled pool, where it surpasses 90% COCO supervised performance with 85% label reduction. Our source code is publicly available at https://github.com/lyumengyao/blad.

Title: A Large-scale Study of Spatiotemporal Representation Learning with a New Benchmark on Action Recognition. (arXiv:2303.13505v1 [cs.CV])

Title: Fairness-guided Few-shot Prompting for Large Language Models. (arXiv:2303.13217v1 [cs.CL])

interpretability

Title: Masked Image Training for Generalizable Deep Image Denoising. (arXiv:2303.13132v1 [cs.CV])

Title: Take 5: Interpretable Image Classification with a Handful of Features. (arXiv:2303.13166v1 [cs.CV])

Title: Leveraging Multi-time Hamilton-Jacobi PDEs for Certain Scientific Machine Learning Problems. (arXiv:2303.12928v1 [cs.LG])

explainability

Title: Xplainer: From X-Ray Observations to Explainable Zero-Shot Diagnosis. (arXiv:2303.13391v1 [cs.CV])

Title: Fault Prognosis of Turbofan Engines: Eventual Failure Prediction and Remaining Useful Life Estimation. (arXiv:2303.12982v1 [cs.LG])

watermark

diffusion

Title: Controllable Inversion of Black-Box Face-Recognition Models via Diffusion. (arXiv:2303.13006v1 [cs.CV])

Title: DiffPattern: Layout Pattern Generation via Discrete Diffusion. (arXiv:2303.13060v1 [cs.CV])

Title: MagicFusion: Boosting Text-to-Image Generation Performance by Fusing Diffusion Models. (arXiv:2303.13126v1 [cs.CV])

Title: DDT: A Diffusion-Driven Transformer-based Framework for Human Mesh Recovery from a Video. (arXiv:2303.13397v1 [cs.CV])

Title: Medical diffusion on a budget: textual inversion for medical image generation. (arXiv:2303.13430v1 [cs.CV])

Title: Text2Video-Zero: Text-to-Image Diffusion Models are Zero-Shot Video Generators. (arXiv:2303.13439v1 [cs.CV])

Our key modifications include (i) enriching the latent codes of the generated frames with motion dynamics to keep the global scene and the background time consistent; and (ii) reprogramming frame-level self-attention using a new cross-frame attention of each frame on the first frame, to preserve the context, appearance, and identity of the foreground object.

Experiments show that this leads to low overhead, yet high-quality and remarkably consistent video generation. Moreover, our approach is not limited to text-to-video synthesis but is also applicable to other tasks such as conditional and content-specialized video generation, and Video Instruct-Pix2Pix, i.e., instruction-guided video editing.

As experiments show, our method performs comparably or sometimes better than recent approaches, despite not being trained on additional video data. Our code will be open sourced at: https://github.com/Picsart-AI-Research/Text2Video-Zero .

Title: ReVersion: Diffusion-Based Relation Inversion from Images. (arXiv:2303.13495v1 [cs.CV])

Title: Ablating Concepts in Text-to-Image Diffusion Models. (arXiv:2303.13516v1 [cs.CV])

Title: Variantional autoencoder with decremental information bottleneck for disentanglement. (arXiv:2303.12959v1 [cs.LG])