Skip to content

Latest commit

 

History

History
18 lines (9 loc) · 1.18 KB

README.md

File metadata and controls

18 lines (9 loc) · 1.18 KB

Machine Learning for Cybersecurity ( Saarland University Wise-21/22) Final Project

Topic- Effect of Cascading Attacks on an Ensemble Defense

Abstract

Deep learning (DL) models are being widely adopted for security-sensitive applications like autonomous driving, facial recognition, etc. Exploring the vulnerability of such models have become an emergent topic has proposed a strategy involving an ensemble of substitute models for black-box attacks. They have also proposed a technique of augmenting the training data using perturbations generated by an ensemble of substitute models have empirically proved the effectiveness of this technique. However, we have observed that in all the related papers, researchers have only used a single attack method at a time. In this paper we introduce a new strategy that uses a cascade of attack methods to generate adversarial data. We demonstrate that our proposed technique leads to a stronger attack and defense.

Contributors

Team-ESS

Eiram Mahera Sheikh - 7008718 ([email protected])

Shayari Bhattacharjee - 7009998 ([email protected])

Shravan Swaminathan - 7002213 ([email protected])