secure

Title: FMT: Removing Backdoor Feature Maps via Feature Map Testing in Deep Neural Networks. (arXiv:2307.11565v1 [cs.LG])

In this work, we propose Feature Map Testing~(FMT). Different from existing defense strategies, which focus on reproducing backdoor triggers, FMT tries to detect the backdoor feature maps, which are trained to extract backdoor information from the inputs. After detecting these backdoor feature maps, FMT will erase them and then fine-tune the model with a secure subset of training data. Our experiments demonstrate that, compared to existing defense strategies, FMT can effectively reduce the Attack Success Rate (ASR) even against the most complex and invisible attack triggers. Second, unlike conventional defense methods that tend to exhibit low Robust Accuracy (i.e., the model's accuracy on the poisoned data), FMT achieves higher RA, indicating its superiority in maintaining model performance while mitigating the effects of backdoor attacks~(e.g., FMT obtains 87.40\% RA in CIFAR10). Third, compared to existing feature map pruning techniques, FMT can cover more backdoor feature maps~(e.g., FMT removes 83.33\% of backdoor feature maps from the model in the CIFAR10 \& BadNet scenario).

security

Title: Attention Consistency Refined Masked Frequency Forgery Representation for Generalizing Face Forgery Detection. (arXiv:2307.11438v1 [cs.CV])

Title: Formal-Guided Fuzz Testing: Targeting Security Assurance from Specification to Implementation for 5G and Beyond. (arXiv:2307.11247v1 [cs.CR])

privacy

Title: ParGANDA: Making Synthetic Pedestrians A Reality For Object Detection. (arXiv:2307.11360v1 [cs.CV])

Title: Distribution Shift Matters for Knowledge Distillation with Webly Collected Images. (arXiv:2307.11469v1 [cs.CV])

Title: The importance of feature preprocessing for differentially private linear optimization. (arXiv:2307.11106v1 [cs.LG])

Title: Epsilon*: Privacy Metric for Machine Learning Models. (arXiv:2307.11280v1 [cs.LG])

protect

Title: CopyRNeRF: Protecting the CopyRight of Neural Radiance Fields. (arXiv:2307.11526v1 [cs.CV])

defense

Title: Making Pre-trained Language Models both Task-solvers and Self-calibrators. (arXiv:2307.11316v1 [cs.CL])

Title: Fast Adaptive Test-Time Defense with Robust Features. (arXiv:2307.11672v1 [cs.LG])

Title: Mitigating Communications Threats in Decentralized Federated Learning through Moving Target Defense. (arXiv:2307.11730v1 [cs.CR])

attack

Title: Improving Transferability of Adversarial Examples via Bayesian Attacks. (arXiv:2307.11334v1 [cs.LG])

Title: OUTFOX: LLM-generated Essay Detection through In-context Learning with Adversarially Generated Examples. (arXiv:2307.11729v1 [cs.CL])

Title: RCVaR: an Economic Approach to Estimate Cyberattacks Costs using Data from Industry Reports. (arXiv:2307.11140v1 [cs.CR])

robust

Title: CSSL-RHA: Contrastive Self-Supervised Learning for Robust Handwriting Authentication. (arXiv:2307.11100v1 [cs.CV])

Title: Flatness-Aware Minimization for Domain Generalization. (arXiv:2307.11108v1 [cs.CV])

Title: SimCol3D -- 3D Reconstruction during Colonoscopy Challenge. (arXiv:2307.11261v1 [cs.CV])

Title: HVDetFusion: A Simple and Robust Camera-Radar Fusion Framework. (arXiv:2307.11323v1 [cs.CV])

Title: Character Time-series Matching For Robust License Plate Recognition. (arXiv:2307.11336v1 [cs.CV])

Title: Robust Visual Question Answering: Datasets, Methods, and Future Challenges. (arXiv:2307.11471v1 [cs.CV])

Title: Improving Viewpoint Robustness for Visual Recognition via Adversarial Training. (arXiv:2307.11528v1 [cs.CV])

Title: Is ChatGPT Involved in Texts? Measure the Polish Ratio to Detect ChatGPT-Generated Text. (arXiv:2307.11380v1 [cs.CL])

Title: WM-NET: Robust Deep 3D Watermarking with Limited Data. (arXiv:2307.11628v1 [cs.CR])

Title: Using simulation to calibrate real data acquisition in veterinary medicine. (arXiv:2307.11695v1 [cs.LG])

biometric

steal

extraction

Title: Towards General Game Representations: Decomposing Games Pixels into Content and Style. (arXiv:2307.11141v1 [cs.CV])

Title: UP-DP: Unsupervised Prompt Learning for Data Pre-Selection with Vision-Language Models. (arXiv:2307.11227v1 [cs.CV])

Title: Morphological Image Analysis and Feature Extraction for Reasoning with AI-based Defect Detection and Classification Models. (arXiv:2307.11643v1 [cs.CV])

membership infer

federate

Title: MAS: Towards Resource-Efficient Federated Multiple-Task Learning. (arXiv:2307.11285v1 [cs.LG])

Title: A Systematic Evaluation of Federated Learning on Biomedical Natural Language Processing. (arXiv:2307.11254v1 [cs.CL])

Title: Differentially Private Heavy Hitter Detection using Federated Analytics. (arXiv:2307.11749v1 [cs.LG])

Title: Demystifying Local and Global Fairness Trade-offs in Federated Learning Using Partial Information Decomposition. (arXiv:2307.11333v1 [cs.LG])

Title: Training Latency Minimization for Model-Splitting Allowed Federated Edge Learning. (arXiv:2307.11532v1 [cs.LG])

fair

Title: A Video-based Detector for Suspicious Activity in Examination with OpenPose. (arXiv:2307.11413v1 [cs.CV])

Title: FEDD -- Fair, Efficient, and Diverse Diffusion-based Lesion Segmentation and Malignancy Classification. (arXiv:2307.11654v1 [cs.CV])

Title: FairMobi-Net: A Fairness-aware Deep Learning Model for Urban Mobility Flow Generation. (arXiv:2307.11214v1 [cs.LG])

Title: Towards Better Fairness-Utility Trade-off: A Comprehensive Measurement-Based Reinforcement Learning Framework. (arXiv:2307.11379v1 [cs.LG])

interpretability

Title: Advancing Visual Grounding with Scene Knowledge: Benchmark and Method. (arXiv:2307.11558v1 [cs.CV])

Title: Interpretable Graph Networks Formulate Universal Algebra Conjectures. (arXiv:2307.11688v1 [cs.LG])

explainability

Title: OxfordTVG-HIC: Can Machine Make Humorous Captions from Images?. (arXiv:2307.11636v1 [cs.CV])

watermark

diffusion

Title: Diffusion Sampling with Momentum for Mitigating Divergence Artifacts. (arXiv:2307.11118v1 [cs.CV])

Title: DPM-OT: A New Diffusion Probabilistic Model Based on Optimal Transport. (arXiv:2307.11308v1 [cs.CV])

Title: Subject-Diffusion:Open Domain Personalized Text-to-Image Generation without Test-time Fine-tuning. (arXiv:2307.11410v1 [cs.CV])

Title: QDC: Quantum Diffusion Convolution Kernels on Graphs. (arXiv:2307.11234v1 [cs.LG])

Title: Predict, Refine, Synthesize: Self-Guiding Diffusion Models for Probabilistic Time Series Forecasting. (arXiv:2307.11494v1 [cs.LG])

noise learning

data-free

transformer

Title: Comparison between transformers and convolutional models for fine-grained classification of insects. (arXiv:2307.11112v1 [cs.CV])

Title: Latent-OFER: Detect, Mask, and Reconstruct with Latent Vectors for Occluded Facial Expression Recognition. (arXiv:2307.11404v1 [cs.CV])

Title: YOLOPose V2: Understanding and Improving Transformer-based 6D Pose Estimation. (arXiv:2307.11550v1 [cs.CV])

Title: SACReg: Scene-Agnostic Coordinate Regression for Visual Localization. (arXiv:2307.11702v1 [cs.CV])

Title: UMLS-KGI-BERT: Data-Centric Knowledge Integration in Transformers for Biomedical Entity Recognition. (arXiv:2307.11170v1 [cs.CL])

Title: What can a Single Attention Layer Learn? A Study Through the Random Features Lens. (arXiv:2307.11353v1 [cs.LG])

Our results feature several implications unique to the attention structure compared with existing random features theory for neural networks, such as (1) Advantages in the sample complexity over standard two-layer random-feature networks; (2) Concrete and natural classes of functions that can be learned efficiently by a random-feature attention layer; and (3) The effect of the sampling distribution of the query-key weight matrix (the product of the query and key matrix), where Gaussian random weights with a non-zero mean result in better sample complexities over the zero-mean counterpart for learning certain natural target functions. Experiments on simulated data corroborate our theoretical findings and further illustrate the interplay between the sample size and the complexity of the target function.

Title: A Deep Learning Approach for Overall Survival Analysis with Missing Values. (arXiv:2307.11465v1 [cs.LG])

generative

Title: LatentAugment: Data Augmentation via Guided Manipulation of GAN's Latent Space. (arXiv:2307.11375v1 [cs.CV])

Title: Enhancing CLIP with GPT-4: Harnessing Visual Descriptions as Prompts. (arXiv:2307.11661v1 [cs.CV])

Title: PI-VEGAN: Physics Informed Variational Embedding Generative Adversarial Networks for Stochastic Differential Equations. (arXiv:2307.11289v1 [cs.LG])

Title: Convergence of SGD for Training Neural Networks with Sliced Wasserstein Losses. (arXiv:2307.11714v1 [cs.LG])

large language model

Title: Generating Image-Specific Text Improves Fine-grained Image Classification. (arXiv:2307.11315v1 [cs.CV])

Title: Generator-Retriever-Generator: A Novel Approach to Open-domain Question Answering. (arXiv:2307.11278v1 [cs.CL])

Title: CohortGPT: An Enhanced GPT for Participant Recruitment in Clinical Study. (arXiv:2307.11346v1 [cs.CL])

Title: Kernelized Offline Contextual Dueling Bandits. (arXiv:2307.11288v1 [cs.LG])

segmentation

Title: Joint one-sided synthetic unpaired image translation and segmentation for colorectal cancer prevention. (arXiv:2307.11253v1 [cs.CV])

Title: MatSpectNet: Material Segmentation Network with Domain-Aware and Physically-Constrained Hyperspectral Reconstruction. (arXiv:2307.11466v1 [cs.CV])

Title: SA-BEV: Generating Semantic-Aware Bird's-Eye-View Feature for Multi-view 3D Object Detection. (arXiv:2307.11477v1 [cs.CV])

Title: CORE: Cooperative Reconstruction for Multi-Agent Perception. (arXiv:2307.11514v1 [cs.CV])

Title: Bridging Vision and Language Encoders: Parameter-Efficient Tuning for Referring Image Segmentation. (arXiv:2307.11545v1 [cs.CV])

Title: Consistency-guided Meta-Learning for Bootstrapping Semi-Supervised Medical Image Segmentation. (arXiv:2307.11604v1 [cs.CV])