Repository logo

Infoscience

  • English
  • French
Log In
Logo EPFL, École polytechnique fédérale de Lausanne

Infoscience

  • English
  • French
Log In
  1. Home
  2. Academic and Research Output
  3. Conferences, Workshops, Symposiums, and Seminars
  4. An anomaly detection approach for backdoored neural networks: face recognition as a case study
 
conference paper

An anomaly detection approach for backdoored neural networks: face recognition as a case study

Unnervik, Alexander
•
Marcel, Sebastien  
January 1, 2022
Proceedings Of The 21St 2022 International Conference Of The Biometrics Special Interest Group (Biosig 2022)
Annual International Conference of the Biometrics-Special-Interest-Group (BIOSIG) of the of the Gesellschaft-fur0Informatik (GI) e-V

Backdoor attacks allow an attacker to embed functionality jeopardizing proper behavior of any algorithm, machine learning or not. This hidden functionality can remain inactive for normal use of the algorithm until activated by the attacker. Given how stealthy backdoor attacks are, consequences of these backdoors could be disastrous if such networks were to be deployed for applications as critical as border or access control. In this paper, we propose a novel backdoored network detection method based on the principle of anomaly detection, involving access to the clean part of the training data and the trained network. We highlight its promising potential when considering various triggers, locations and identity pairs, without the need to make any assumptions on the nature of the backdoor and its setup. We test our method on a novel dataset of backdoored networks and report detectability results with perfect scores.

  • Details
  • Metrics
Type
conference paper
DOI
10.1109/BIOSIG55365.2022.9897044
Web of Science ID

WOS:000865963900023

Author(s)
Unnervik, Alexander
Marcel, Sebastien  
Date Issued

2022-01-01

Publisher

IEEE

Publisher place

New York

Published in
Proceedings Of The 21St 2022 International Conference Of The Biometrics Special Interest Group (Biosig 2022)
ISBN of the book

978-1-6654-7666-9

Series title/Series vol.

Lecture Notes in Informatics-Proceedings

Volume

P-329

Subjects

Computer Science, Artificial Intelligence

•

Computer Science, Information Systems

•

Computer Science, Theory & Methods

•

Mathematical & Computational Biology

•

Computer Science

•

backdoor attack

•

trojan attack

•

anomaly detection

•

cnn

•

face recognition

•

biometrics

•

security

Editorial or Peer reviewed

REVIEWED

Written at

EPFL

EPFL units
LIDIAP  
Event nameEvent placeEvent date
Annual International Conference of the Biometrics-Special-Interest-Group (BIOSIG) of the of the Gesellschaft-fur0Informatik (GI) e-V

Darmstadt, GERMANY

Sep 14-16, 2022

Available on Infoscience
November 7, 2022
Use this identifier to reference this record
https://infoscience.epfl.ch/handle/20.500.14299/191924
Logo EPFL, École polytechnique fédérale de Lausanne
  • Contact
  • infoscience@epfl.ch

  • Follow us on Facebook
  • Follow us on Instagram
  • Follow us on LinkedIn
  • Follow us on X
  • Follow us on Youtube
AccessibilityLegal noticePrivacy policyCookie settingsEnd User AgreementGet helpFeedback

Infoscience is a service managed and provided by the Library and IT Services of EPFL. © EPFL, tous droits réservés