Please use this identifier to cite or link to this item:
https://hdl.handle.net/10356/174938
Title: | Evaluation of backdoor attacks and defenses to deep neural networks | Authors: | Ooi, Ying Xuan | Keywords: | Computer and Information Science | Issue Date: | 2024 | Publisher: | Nanyang Technological University | Source: | Ooi, Y. X. (2024). Evaluation of backdoor attacks and defenses to deep neural networks. Final Year Project (FYP), Nanyang Technological University, Singapore. https://hdl.handle.net/10356/174938 | Project: | SCSE23-0065 | Abstract: | The proliferation of Artificial Intelligence in our daily lives has inevitably attracted the omnipresent threat of backdoor attacks in deep neural networks from adversary. This study aimed to enhance awareness on various notorious backdoor attacks and the defense practices by assessing the effectiveness, stealthiness of the attacks, and the resilience of their countermeasures. This was achieved through a series of experiments designed to correlate key variables in their response to Attack Success Rate and Clean Accuracy. The study revealed the inconvenient truth that backdoor attacking is easier than defending it. BadNets was clearly the most potent attack as it has the highest average Attack Success Rate while there are more uncertainty on the defense side. The analysis permitted ranking of attacks and defense strategies albeit subjected to the characteristics of the neural network and the poisoning rate. Nevertheless, it suggested some balancing trade-offs. There is no one-size fits-all defense strategy due to poor adaptivity; the situation is akin to an arms race, where improvements on one side prompted countermeasures from the other, leading to further developments in a perpetual competition. What made the matter worse is the continuous evolution of backdoor attacks towards a higher level of stealthiness. I hope that this study will inspire the readers for further research in search of adaptive defense strategy for wider range of backdoor attacks. | URI: | https://hdl.handle.net/10356/174938 | Schools: | School of Computer Science and Engineering | Fulltext Permission: | restricted | Fulltext Availability: | With Fulltext |
Appears in Collections: | SCSE Student Reports (FYP/IA/PA/PI) |
Files in This Item:
File | Description | Size | Format | |
---|---|---|---|---|
Ooi Ying Xuan FYP Report (SCSE23-0065).pdf Restricted Access | 17.86 MB | Adobe PDF | View/Open |
Page view(s)
149
Updated on May 7, 2025
Download(s)
11
Updated on May 7, 2025
Google ScholarTM
Check
Items in DR-NTU are protected by copyright, with all rights reserved, unless otherwise indicated.