secure

Title: Segment and Track Anything. (arXiv:2305.06558v1 [cs.CV])

Title: Universally Composable Simultaneous Broadcast against a Dishonest Majority and Applications. (arXiv:2305.06468v1 [cs.CR])

security

Title: Exploiting Fine-Grained DCT Representations for Hiding Image-Level Messages within JPEG Images. (arXiv:2305.06582v1 [cs.CV])

Title: Emotion Recognition for Challenged People Facial Appearance in Social using Neural Network. (arXiv:2305.06842v1 [cs.CV])

Title: HoneyIoT: Adaptive High-Interaction Honeypot for IoT Devices Through Reinforcement Learning. (arXiv:2305.06430v1 [cs.CR])

Title: Assault and Battery: Evaluating the Security of Power Conversion Systems Against Electromagnetic Injection Attacks. (arXiv:2305.06901v1 [cs.CR])

In this paper, we present the first detailed study on switched-mode power converters by targeting their voltage and current sensors through IEMI attacks. We present a theoretical framework for evaluating IEMI attacks against feedback-based power supplies in the general case. We experimentally validate our theoretical predictions by analyzing multiple AC-DC and DC-DC converters, automotive grade current sensors, and dedicated battery chargers, and demonstrate the systematic vulnerability of all examined categories under real-world conditions. Finally, we demonstrate that sensor attacks on power converters can cause permanent damage to Li-Ion batteries during the charging process.

Title: REMaQE -- Reverse Engineering Math Equations from Executables. (arXiv:2305.06902v1 [cs.CR])

Title: Watch This Space: Securing Satellite Communication through Resilient Transmitter Fingerprinting. (arXiv:2305.06947v1 [cs.CR])

In this paper we explore radio transmitter fingerprinting in satellite systems. We introduce the SatIQ system, proposing novel techniques for authenticating transmissions using characteristics of transmitter hardware expressed as impairments on the downlinked signal. We look in particular at high sample rate fingerprinting, making fingerprints difficult to forge without similarly high sample rate transmitting hardware, thus raising the budget for attacks. We also examine the difficulty of this approach with high levels of atmospheric noise and multipath scattering, and analyze potential solutions to this problem.

We focus on the Iridium satellite constellation, for which we collected 1010464 messages at a sample rate of 25 MS/s. We use this data to train a fingerprinting model consisting of an autoencoder combined with a Siamese neural network, enabling the model to learn an efficient encoding of message headers that preserves identifying information.

We demonstrate the system's robustness under attack by replaying messages using a Software-Defined Radio, achieving an Equal Error Rate of 0.120, and ROC AUC of 0.946. Finally, we analyze its stability over time by introducing a time gap between training and testing data, and its extensibility by introducing new transmitters which have not been seen before. We conclude that our techniques are useful for building systems that are stable over time, can be used immediately with new transmitters without retraining, and provide robustness against spoofing and replay by raising the required budget for attacks.

Title: Specification and Verification of Side-channel Security for Open-source Processors via Leakage Contracts. (arXiv:2305.06979v1 [cs.CR])

Title: Exploring the Landscape of Machine Unlearning: A Survey and Taxonomy. (arXiv:2305.06360v1 [cs.LG])

privacy

Title: When the Majority is Wrong: Leveraging Annotator Disagreement for Subjective Tasks. (arXiv:2305.06626v1 [cs.CL])

Title: Speranza: Usable, privacy-friendly software signing. (arXiv:2305.06463v1 [cs.CR])

In Speranza, a signer uses an automated certificate authority (CA) to create a private identity-backed signature and proof of authorization. Verifiers check that a signer was authorized to publish a package, without learning the signer's identity. The package repository keeps a private mapping from package names to the identities of authorized signers, but publishes only commitments to identities in a public map. When issuing certificates, the CA issues the certificate to a distinct commitment to the same identity. The signer then creates a zero-knowledge proof of a commitment that these are identity co-commitments.

We implemented a proof-of-concept, finding that costs to maintainers (signing) and end users (verifying) are small, even for a repository with millions of packages: 404 us and 372 us, respectively. End users must learn the authorization policy in order to verify packages. In a naive approach, they must download the policy for every package in advance (possibly 100 MiB total, or more); we use techniques inspired by recent key transparency systems to reduce this to 2 KiB. Server costs in this system are negligible. Our evaluation finds that Speranza is practical on the scale of the largest software repositories.

Title: Securing Distributed SGD against Gradient Leakage Threats. (arXiv:2305.06473v1 [cs.LG])

Title: MISO: Legacy-compatible Privacy-preserving Single Sign-on using Trusted Execution Environments. (arXiv:2305.06833v1 [cs.CR])

protect

Title: Bot or Human? Detecting ChatGPT Imposters with A Single Question. (arXiv:2305.06424v1 [cs.CL])

Title: Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA. (arXiv:2305.06763v1 [cs.CR])

In this work we aim to provide tools for the simplification of nonlinear MBA expressions in a very practical context to compete in the arms race between the generation of hard, diverse MBAs and their analysis. The proposed algorithm GAMBA employs algebraic rewriting at its core and extends SiMBA. It achieves efficient deobfuscation of MBA expressions from the most widely tested public datasets and simplifies expressions to their ground truths in most cases, surpassing peer tools.

defense

attack

Title: Inter-frame Accelerate Attack against Video Interpolation Models. (arXiv:2305.06540v1 [cs.CV])

Title: Distracting Downpour: Adversarial Weather Attacks for Motion Estimation. (arXiv:2305.06716v1 [cs.CV])

Title: Prevention of shoulder-surfing attacks using shifting condition using digraph substitution rules. (arXiv:2305.06549v1 [cs.CR])

robust

Title: HyperE2VID: Improving Event-Based Video Reconstruction via Hypernetworks. (arXiv:2305.06382v1 [cs.CV])

Title: An Empirical Study on the Robustness of the Segment Anything Model (SAM). (arXiv:2305.06422v1 [cs.CV])

Title: Can SAM Boost Video Super-Resolution?. (arXiv:2305.06524v1 [cs.CV])

In this paper, we investigate a more robust and semantic-aware prior for enhanced VSR by utilizing the Segment Anything Model (SAM), a powerful foundational model that is less susceptible to image degradation. To use the SAM-based prior, we propose a simple yet effective module -- SAM-guidEd refinEment Module (SEEM), which can enhance both alignment and fusion procedures by the utilization of semantic information. This light-weight plug-in module is specifically designed to not only leverage the attention mechanism for the generation of semantic-aware feature but also be easily and seamlessly integrated into existing methods. Concretely, we apply our SEEM to two representative methods, EDVR and BasicVSR, resulting in consistently improved performance with minimal implementation effort, on three widely used VSR datasets: Vimeo-90K, REDS and Vid4. More importantly, we found that the proposed SEEM can advance the existing methods in an efficient tuning manner, providing increased flexibility in adjusting the balance between performance and the number of training parameters. Code will be open-source soon.

Title: WeLayout: WeChat Layout Analysis System for the ICDAR 2023 Competition on Robust Layout Segmentation in Corporate Documents. (arXiv:2305.06553v1 [cs.CV])

Title: Hyperbolic Deep Learning in Computer Vision: A Survey. (arXiv:2305.06611v1 [cs.CV])

Title: DeepSTEP -- Deep Learning-Based Spatio-Temporal End-To-End Perception for Autonomous Vehicles. (arXiv:2305.06820v1 [cs.CV])

Title: Randomized Smoothing with Masked Inference for Adversarially Robust Text Classifications. (arXiv:2305.06522v1 [cs.CL])

Title: SemEval-2023 Task 2: Fine-grained Multilingual Named Entity Recognition (MultiCoNER 2). (arXiv:2305.06586v1 [cs.CL])

Title: THUIR@COLIEE 2023: More Parameters and Legal Knowledge for Legal Case Entailment. (arXiv:2305.06817v1 [cs.CL])

Title: Think Twice: Measuring the Efficiency of Eliminating Prediction Shortcuts of Question Answering Models. (arXiv:2305.06841v1 [cs.CL])

We propose a simple method for measuring a scale of models' reliance on any identified spurious feature and assess the robustness towards a large set of known and newly found prediction biases for various pre-trained models and debiasing methods in Question Answering (QA). We find that the reported OOD gains of debiasing methods can not be explained by mitigated reliance on biased features, suggesting that biases are shared among QA datasets. We further evidence this by measuring that performance of OOD models depends on bias features comparably to the ID model, motivating future work to refine the reports of LLMs' robustness to a level of known spurious features.

Title: Matrix tri-factorization over the tropical semiring. (arXiv:2305.06624v1 [cs.LG])

Title: On practical robust reinforcement learning: adjacent uncertainty set and double-agent algorithm. (arXiv:2305.06657v1 [cs.LG])

Title: Towards Theoretical Understanding of Data-Driven Policy Refinement. (arXiv:2305.06796v1 [cs.LG])

biometric

Title: Deep Visual-Genetic Biometrics for Taxonomic Classification of Rare Species. (arXiv:2305.06695v1 [cs.CV])

steal

extraction

Title: Towards L-System Captioning for Tree Reconstruction. (arXiv:2305.06483v1 [cs.CV])

Title: InstructBLIP: Towards General-purpose Vision-Language Models with Instruction Tuning. (arXiv:2305.06500v1 [cs.CV])

Title: Serial Contrastive Knowledge Distillation for Continual Few-shot Relation Extraction. (arXiv:2305.06616v1 [cs.CL])

Title: Improving Continual Relation Extraction by Distinguishing Analogous Semantics. (arXiv:2305.06620v1 [cs.CL])

Title: A fast topological approach for predicting anomalies in time-varying graphs. (arXiv:2305.06523v1 [cs.LG])

membership infer

federate

Title: Utility-Maximizing Bidding Strategy for Data Consumers in Auction-based Federated Learning. (arXiv:2305.06784v1 [cs.LG])

Title: Multi-Tier Client Selection for Mobile Federated Learning Networks. (arXiv:2305.06865v1 [cs.LG])

fair

Title: SMATCH++: Standardized and Extended Evaluation of Semantic Graphs. (arXiv:2305.06993v1 [cs.CL])

For better inspection, we divide the metric into three modules: pre-processing, alignment, and scoring. Examining each module, we specify its goals and diagnose potential issues, for which we discuss and test mitigation strategies. For pre-processing, we show how to fully conform to annotation guidelines that allow structurally deviating but valid graphs. For safer and enhanced alignment, we show the feasibility of optimal alignment in a standard evaluation setup, and develop a lossless graph compression method that shrinks the search space and significantly increases efficiency. For improved scoring, we propose standardized and extended metric calculation of fine-grained sub-graph meaning aspects. Our code is available at https://github.com/flipz357/smatchpp

Title: A Survey on Intersectional Fairness in Machine Learning: Notions, Mitigation, and Challenges. (arXiv:2305.06969v1 [cs.LG])

Title: A statistical approach to detect sensitive features in a group fairness setting. (arXiv:2305.06994v1 [cs.LG])

In this paper, we propose a preprocessing step to address the task of automatically recognizing sensitive features that does not require a trained model to verify unfair results. Our proposal is based on the Hilber-Schmidt independence criterion, which measures the statistical dependence of variable distributions. We hypothesize that if the dependence between the label vector and a candidate is high for a sensitive feature, then the information provided by this feature will entail disparate performance measures between groups. Our empirical results attest our hypothesis and show that several features considered as sensitive in the literature do not necessarily entail disparate (unfair) results.

interpretability

Title: COCKATIEL: COntinuous Concept ranKed ATtribution with Interpretable ELements for explaining neural net classifiers on NLP tasks. (arXiv:2305.06754v1 [cs.CL])

explainability

watermark

Title: ReMark: Receptive Field based Spatial WaterMark Embedding Optimization using Deep Network. (arXiv:2305.06786v1 [cs.CV])

diffusion

Title: Analyzing Bias in Diffusion-based Face Generation Models. (arXiv:2305.06402v1 [cs.CV])

Title: Undercover Deepfakes: Detecting Fake Segments in Videos. (arXiv:2305.06564v1 [cs.CV])

Title: Null-text Guidance in Diffusion Models is Secretly a Cartoon-style Creator. (arXiv:2305.06710v1 [cs.CV])

Title: Exploiting Diffusion Prior for Real-World Image Super-Resolution. (arXiv:2305.07015v1 [cs.CV])

noise learning

data-free

transformer

Title: Patch-wise Mixed-Precision Quantization of Vision Transformer. (arXiv:2305.06559v1 [cs.CV])

Title: PVT-SSD: Single-Stage 3D Object Detector with Point-Voxel Transformer. (arXiv:2305.06621v1 [cs.CV])

Title: Cascaded Cross-Attention Networks for Data-Efficient Whole-Slide Image Classification Using Transformers. (arXiv:2305.06963v1 [cs.CV])

Title: Region-Aware Pretraining for Open-Vocabulary Object Detection with Vision Transformers. (arXiv:2305.07011v1 [cs.CV])

Title: SparseGNV: Generating Novel Views of Indoor Scenes with Sparse Input Views. (arXiv:2305.07024v1 [cs.CV])

Title: EfficientViT: Memory Efficient Vision Transformer with Cascaded Group Attention. (arXiv:2305.07027v1 [cs.CV])

Title: A Method to Automate the Discharge Summary Hospital Course for Neurology Patients. (arXiv:2305.06416v1 [cs.CL])

Title: Advancing Neural Encoding of Portuguese with Transformer Albertina PT-*. (arXiv:2305.06721v1 [cs.CL])

To develop this encoder, which we named Albertina PT-*, a strong model was used as a starting point, DeBERTa, and its pre-training was done over data sets of Portuguese, namely over a data set we gathered for PT-PT and over the brWaC corpus for PT-BR. The performance of Albertina and competing models was assessed by evaluating them on prominent downstream language processing tasks adapted for Portuguese.

Both Albertina PT-PT and PT-BR versions are distributed free of charge and under the most permissive license possible and can be run on consumer-grade hardware, thus seeking to contribute to the advancement of research and innovation in language technology for Portuguese.

Title: Detecting Idiomatic Multiword Expressions in Clinical Terminology using Definition-Based Representation Learning. (arXiv:2305.06801v1 [cs.CL])

Title: IUST_NLP at SemEval-2023 Task 10: Explainable Detecting Sexism with Transformers and Task-adaptive Pretraining. (arXiv:2305.06892v1 [cs.CL])

Title: A General-Purpose Multilingual Document Encoder. (arXiv:2305.07016v1 [cs.CL])

Title: Dynamic Graph Representation Learning for Depression Screening with Transformer. (arXiv:2305.06447v1 [cs.LG])

generative

Title: Text-To-Concept (and Back) via Cross-Model Alignment. (arXiv:2305.06386v1 [cs.CV])

large language model

Title: LACoS-BLOOM: Low-rank Adaptation with Contrastive objective on 8 bits Siamese-BLOOM. (arXiv:2305.06404v1 [cs.CL])

Title: How Good are Commercial Large Language Models on African Languages?. (arXiv:2305.06530v1 [cs.CL])

Title: Chain-of-Dictionary Prompting Elicits Translation in Large Language Models. (arXiv:2305.06575v1 [cs.CL])

Title: INGENIOUS: Using Informative Data Subsets for Efficient Pre-Training of Large Language Models. (arXiv:2305.06677v1 [cs.CL])

Title: Active Retrieval Augmented Generation. (arXiv:2305.06983v1 [cs.CL])

Title: Evaluating Open-Domain Question Answering in the Era of Large Language Models. (arXiv:2305.06984v1 [cs.CL])

Title: Not All Languages Are Created Equal in LLMs: Improving Multilingual Capability by Cross-Lingual-Thought Prompting. (arXiv:2305.07004v1 [cs.CL])

segmentation

Title: Convolutional Neural Networks Rarely Learn Shape for Semantic Segmentation. (arXiv:2305.06568v1 [cs.CV])

Title: Bi-level Dynamic Learning for Jointly Multi-modality Image Fusion and Beyond. (arXiv:2305.06720v1 [cs.CV])

Title: Towards a Better Understanding of the Computer Vision Research Community in Africa. (arXiv:2305.06773v1 [cs.CV])

Title: Meta-Learners for Few-Shot Weakly-Supervised Medical Image Segmentation. (arXiv:2305.06912v1 [cs.CV])

Title: FreePoint: Unsupervised Point Cloud Instance Segmentation. (arXiv:2305.06973v1 [cs.CV])

Title: Meta-hallucinator: Towards Few-Shot Cross-Modality Cardiac Image Segmentation. (arXiv:2305.06978v1 [cs.CV])

Title: Subword Segmental Machine Translation: Unifying Segmentation and Target Sentence Generation. (arXiv:2305.07005v1 [cs.CL])