Paper published on a website (Scientific congresses, symposiums and conference proceedings)
Towards Adaptive Attacks on Constrained Tabular Machine Learning
SIMONETTO, Thibault Jean Angel; GHAMIZI, Salah; CORDY, Maxime
2024ICML 2024 Workshop on the Next Generation of AI Safety
Peer reviewed
 

Files


Full Text
towards_adaptive_attacks_on_constrained_tabular_machine_learning.pdf
Author postprint (317.73 kB)
Download

All documents in ORBilu are protected by a user license.

Send to



Details



Keywords :
machine learning; security; adversarial attacks; tabular data; constrained machine learning
Abstract :
[en] State-of-the-art deep learning models for tabular data have recently achieved acceptable performance to be deployed in industrial settings. Contrary to computer vision, there is to date no efficient constrained whitebox attack to evaluate the adversarial robustness of deep tabular models due to intrinsic properties of tabular data such as categorical features, immutability, and feature relationship constraints. To fill this gap, we propose CAPGD, the first efficient evasion attack for constrained tabular deep learning models. CAPGD is an iterative parameter-free attack to generate adversarial examples under constraints. We evaluate CAPGD across four critical use cases: credit scoring, phishing, botnet attacks, and ICU survival prediction. Our empirical study covers 5 modern tabular deep learning architectures and demonstrates the effectiveness of our attack which improves over the most effective constrained attack by 81% points.
Research center :
NCER-FT - FinTech National Centre of Excellence in Research
Interdisciplinary Centre for Security, Reliability and Trust (SnT) > SerVal - Security, Reasoning & Validation
Disciplines :
Computer science
Author, co-author :
SIMONETTO, Thibault Jean Angel ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT) > SerVal
GHAMIZI, Salah;  LIST - Luxembourg Institute of Science and Technology [LU] > Intelligent Clean Energy Systems ; RIKEN Center for Advanced Intelligence Project
CORDY, Maxime  ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT) > SerVal
External co-authors :
yes
Language :
English
Title :
Towards Adaptive Attacks on Constrained Tabular Machine Learning
Publication date :
2024
Event name :
ICML 2024 Workshop on the Next Generation of AI Safety
Event date :
2024
Peer reviewed :
Peer reviewed
Focus Area :
Computational Sciences
Name of the research project :
U-AGR-7180 - BRIDGES2022-1/17437536/TIMELESS BGL Cont - CORDY Maxime
Available on ORBilu :
since 15 December 2024

Statistics


Number of views
109 (4 by Unilu)
Number of downloads
58 (4 by Unilu)

Bibliography


Similar publications



Contact ORBilu