Wolf in Sheep's Clothing - The Downscaling Attack Against Deep Learning Applications

نویسندگان

  • Qixue Xiao
  • Kang Li
  • Deyue Zhang
  • Yier Jin
چکیده

This paper considers security risks buried in the data processing pipeline in common deep learning applications. Deep learning models usually assume a fixed scale for their training and input data. To allow deep learning applications to handle a wide range of input data, popular frameworks, such as Caffe, TensorFlow, and Torch, all provide data scaling functions to resize input to the dimensions used by deep learning models. Image scaling algorithms are intended to preserve the visual features of an image after scaling. However, common image scaling algorithms are not designed to handle human crafted images. Attackers can make the scaling outputs look dramatically different from the corresponding input images. This paper presents a downscaling attack that targets the data scaling process in deep learning applications. By carefully crafting input data that mismatches with the dimension used by deep learning models, attackers can create deceiving effects. A deep learning application effectively consumes data that are not the same as those presented to users. The visual inconsistency enables practical evasion and data poisoning attacks to deep learning applications. This paper presents proof-of-concept attack samples to popular deep-learning-based image classification applications. To address the downscaling attacks, the paper also suggests multiple potential mitigation strategies.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Occult Bacteraemia and Aortic Graft Infection: A Wolf in Sheep's Clothing

We report a case of late-onset aortic prosthetic vascular graft infection. We stress the importance of maintaining a high index of suspicion for any patient presenting with fever on the background of in situ prosthetic material. We present the difficulties in managing these extremely complicated, often life and limb threatening infections and suggest that a multidisciplinary team approach, invo...

متن کامل

A sheep in wolf's clothing.

Most are familiar with the biblical warnings about false prophets presenting as the wolf in sheep's clothing, but in this issue of Blood, Mansoor and colleagues expose a sheep in wolf's clothing by shining a bright light on a newly described benign disease previously pretending to be a very bad malignancy, and doing so quite convincingly.

متن کامل

Limiting Respondeat Superior Liability: a Wolf in Sheep’s Clothing?

In this response to Burt Neuborne’s Who’s Afraid of the Human Rights Commission, the author seeks to challenge many of the assumptions underlying Neuborne’s model calling for increased focus on preventative measures by the Human Rights Commission. In Part I, the author addresses Neuborne’s moral arguments and concludes that he undermines the ability of sanctions to deter future conduct. In Part...

متن کامل

Solid electrolyte interphase in semi-solid flow batteries: a wolf in sheep's clothing.

The formation of the alkyl carbonate-derived solid electrolyte interphase (SEI) enables the use of active materials operating at very cathodic potentials in Li-ion batteries. However, the SEI in semi-solid flow batteries results in a hindered electron transfer between a fluid electrode and the current collector restricting the operating potentials to ca. 0.8 V vs. Li/Li(+) for EC-based electrol...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:
  • CoRR

دوره abs/1712.07805  شماره 

صفحات  -

تاریخ انتشار 2017