Open Access System for Information Sharing

Login Library

 

Conference
Cited 0 time in webofscience Cited 0 time in scopus
Metadata Downloads

Resilient linear classification: An approach to deal with attacks on training data

Title
Resilient linear classification: An approach to deal with attacks on training data
Authors
Park, SangdonWeimer, JamesLee, Insup
Date Issued
2017-04-19
Publisher
Association for Computing Machinery, Inc
Abstract
Data-driven techniques are used in cyber-physical systems (CPS) for controlling autonomous vehicles, handling demand responses for energy management, and modeling human physiology for medical devices. These data-driven techniques extract models from training data, where their performance is often analyzed with respect to random errors in the training data. However, if the training data is maliciously altered by attackers, the effect of these attacks on the learning algorithms underpinning data-driven CPS have yet to be considered. In this paper, we analyze the resilience of classification algorithms to training data attacks. Specifically, a generic metric is proposed that is tailored to measure resilience of classification algorithms with respect to worst-case tampering of the training data. Using the metric, we show that traditional linear classification algorithms are resilient under restricted conditions. To overcome these limitations, we propose a linear classification algorithm with a majority constraint and prove that it is strictly more resilient than the traditional algorithms. Evaluations on both synthetic data and a real-world retrospective arrhythmia medical case-study show that the traditional algorithms are vulnerable to tampered training data, whereas the proposed algorithm is more resilient (as measured by worst-case tampering).
URI
https://oasis.postech.ac.kr/handle/2014.oak/120016
Article Type
Conference
Citation
8th ACM/IEEE International Conference on Cyber-Physical Systems, ICCPS 2017, page. 155 - 164, 2017-04-19
Files in This Item:
There are no files associated with this item.

qr_code

  • mendeley

Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Researcher

박상돈PARK, SANGDON
Grad. School of AI
Read more

Views & Downloads

Browse