Repository logo

Infoscience

  • English
  • French
Log In
Logo EPFL, École polytechnique fédérale de Lausanne

Infoscience

  • English
  • French
Log In
  1. Home
  2. Academic and Research Output
  3. Journal articles
  4. Wild Patterns Reloaded: A Survey of Machine Learning Security against Training Data Poisoning
 
research article

Wild Patterns Reloaded: A Survey of Machine Learning Security against Training Data Poisoning

Cina, Antonio E.
•
Grosse, Kathrin  
•
Demontis, Ambra
Show more
July 13, 2023
ACM Computing Surveys

The success of machine learning is fueled by the increasing availability of computing power and large training datasets. The training data is used to learn new models or update existing ones, assuming that it is sufficiently representative of the data that will be encountered at test time. This assumption is challenged by the threat of poisoning, an attack that manipulates the training data to compromise the model’s performance at test time. Although poisoning has been acknowledged as a relevant threat in industry applications, and a variety of different attacks and defenses have been proposed so far, a complete systematization and critical review of the field is still missing. In this survey, we provide a comprehensive systematization of poisoning attacks and defenses in machine learning, reviewing more than 100 papers published in the field in the past 15 years. We start by categorizing the current threat models and attacks and then organize existing defenses accordingly. While we focus mostly on computer-vision applications, we argue that our systematization also encompasses state-of-the-art attacks and defenses for other data modalities. Finally, we discuss existing resources for research in poisoning and shed light on the current limitations and open research questions in this research field.

  • Details
  • Metrics
Type
research article
DOI
10.1145/3585385
Author(s)
Cina, Antonio E.
Grosse, Kathrin  
Demontis, Ambra
Vascon, Sebastiano
Zellinger, Werner
Moser, Bernhard A.
Oprea, Alina
Biggio, Battista
Pellilo, Marcello
Roli, Fabio
Date Issued

2023-07-13

Published in
ACM Computing Surveys
Volume

55

Issue

294

Start page

1

End page

39

Editorial or Peer reviewed

REVIEWED

Written at

OTHER

EPFL units
VITA  
Available on Infoscience
January 29, 2024
Use this identifier to reference this record
https://infoscience.epfl.ch/handle/20.500.14299/203187
Logo EPFL, École polytechnique fédérale de Lausanne
  • Contact
  • infoscience@epfl.ch

  • Follow us on Facebook
  • Follow us on Instagram
  • Follow us on LinkedIn
  • Follow us on X
  • Follow us on Youtube
AccessibilityLegal noticePrivacy policyCookie settingsEnd User AgreementGet helpFeedback

Infoscience is a service managed and provided by the Library and IT Services of EPFL. © EPFL, tous droits réservés