首页 | 本学科首页   官方微博 | 高级检索  
     


Kernel-based adversarial attacks and defenses on support vector classification
Authors:Wanman Li  Xiaozhang Liu  Anli Yan  Jie Yang
Affiliation:School of Computer Science and Technology, Hainan University, Haikou, 570?228, China
Abstract:While malicious samples are widely found in many application fields of machine learning, suitable countermeasures have been investigated in the field of adversarial machine learning. Due to the importance and popularity of Support Vector Machines (SVMs), we first describe the evasion attack against SVM classification and then propose a defense strategy in this paper. The evasion attack utilizes the classification surface of SVM to iteratively find the minimal perturbations that mislead the nonlinear classifier. Specially, we propose what is called a vulnerability function to measure the vulnerability of the SVM classifiers. Utilizing this vulnerability function, we put forward an effective defense strategy based on the kernel optimization of SVMs with Gaussian kernel against the evasion attack. Our defense method is verified to be very effective on the benchmark datasets, and the SVM classifier becomes more robust after using our kernel optimization scheme.
Keywords:Adversarial machine learning  Support vector machines  Evasion attack  Vulnerability function  Kernel optimization
本文献已被 ScienceDirect 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号