dc.contributor.author | Aladag, Merve | |
dc.contributor.author | Catak, Ferhat Özgur | |
dc.contributor.author | Gul, Ensar | |
dc.date.accessioned | 2020-04-14T10:54:16Z | |
dc.date.available | 2020-04-14T10:54:16Z | |
dc.date.created | 2020-01-24T09:28:53Z | |
dc.date.issued | 2019 | |
dc.identifier.isbn | 978-1-7281-3993-7 | |
dc.identifier.uri | https://hdl.handle.net/11250/2650955 | |
dc.description.abstract | At the present time, machine learning methods have been becoming popular and the usage areas of these methods have also increased with this popularity. The machine learning methods are expected to increase in the cyber security components like firewalls, antivirus software etc. Nowadays, the use of this type of machine learning methods brings with it various risks. Attackers develop different methods to manipulate different systems, not only cyber security components, but also image detection systems. Therefore, securing machine learning models has become critical. In this paper, we demonstrate a data poisoning attack towards classification method of machine learning models and we also proposed a defense algorithm which makes machine learning models more robust against data poisoning attacks. In this study, we have conducted data poisoning attacks on MNIST, a widely used character detection data set. Using the poisoned MNIST dataset, we built classification models more reliable by using a generative model such as AutoEncoder. | en_US |
dc.language.iso | eng | en_US |
dc.publisher | Institute of Electrical and Electronics Engineers (IEEE) | en_US |
dc.title | Preventing Data Poisoning Attacks By Using Generative Models | en_US |
dc.type | Chapter | en_US |
dc.type | Peer reviewed | en_US |
dc.description.version | acceptedVersion | en_US |
dc.source.pagenumber | 4 | en_US |
dc.identifier.doi | 10.1109/UBMYK48245.2019.8965459 | |
dc.identifier.cristin | 1781269 | |
dc.description.localcode | © 2020 IEEE. Personal use of this material is permitted. Permission from IEEE must be obtained for all other uses, in any current or future media, including reprinting/republishing this material for advertising or promotional purposes, creating new collective works, for resale or redistribution to servers or lists, or reuse of any copyrighted component of this work in other works. | en_US |
cristin.unitcode | 194,63,30,0 | |
cristin.unitname | Institutt for informasjonssikkerhet og kommunikasjonsteknologi | |
cristin.ispublished | true | |
cristin.fulltext | original | |
cristin.qualitycode | 1 | |