2 papers
cs.CR2022
Bad Citrus: Reducing Adversarial Costs with Model Distances
Giorgio Severi, Will Pearce, Alina Oprea
Recent work by Jia et al., showed the possibility of effectively computing pairwise model distances in weight space, using a model explanation technique known as LIME. This method…
cs.CR2020
Explanation-Guided Backdoor Poisoning Attacks Against Malware Classifiers
Giorgio Severi, Jim Meyer, Scott Coull +1
Training pipelines for machine learning (ML) based malware classification often rely on crowdsourced threat feeds, exposing a natural attack injection point. In this paper, we stud…