{"metadata":{"_oai":{"id":"oai:ipsj.ixsq.nii.ac.jp:00216992","sets":["1164:2836:10841:10842"]},"path":["10842"],"owner":"44499","recid":"216992","title":["メタ学習に基づくFew-Shot分類に対するバックドアポイズニング攻撃"],"pubdate":{"attribute_name":"公開日","attribute_value":"2022-03-03"},"_buckets":{"deposit":"5c426284-260b-45fa-9d90-9d7f685df452"},"_deposit":{"id":"216992","pid":{"type":"depid","value":"216992","revision_id":0},"owners":[44499],"status":"published","created_by":44499},"item_title":"メタ学習に基づくFew-Shot分類に対するバックドアポイズニング攻撃","author_link":["561272","561269","561273","561270","561271","561268"],"item_titles":{"attribute_name":"タイトル","attribute_value_mlt":[{"subitem_title":"メタ学習に基づくFew-Shot分類に対するバックドアポイズニング攻撃"},{"subitem_title":"Backdoor Poisoning Attacks on Meta-Learned Few-Shot Classifiers","subitem_title_language":"en"}]},"item_keyword":{"attribute_name":"キーワード","attribute_value_mlt":[{"subitem_subject":"攻撃検知・機械学習セキュリティ","subitem_subject_scheme":"Other"}]},"item_type_id":"4","publish_date":"2022-03-03","item_4_text_3":{"attribute_name":"著者所属","attribute_value_mlt":[{"subitem_text_value":"豊橋技術科学大学大学院工学研究科"},{"subitem_text_value":"山形大学AIデザイン教育研究推進センター/山形大学大学院理工学研究科"},{"subitem_text_value":"豊橋技術科学大学大学院工学研究科"}]},"item_4_text_4":{"attribute_name":"著者所属(英)","attribute_value_mlt":[{"subitem_text_value":"Department of Computer Science and Engineering, Toyohashi University of Technology","subitem_text_language":"en"},{"subitem_text_value":"AI Design Education and Research Promotion Center, Yamagata University / Graduate School of Science and Engineering, Yamagata University","subitem_text_language":"en"},{"subitem_text_value":"Department of Computer Science and Engineering, Toyohashi University of Technology","subitem_text_language":"en"}]},"item_language":{"attribute_name":"言語","attribute_value_mlt":[{"subitem_language":"jpn"}]},"item_publisher":{"attribute_name":"出版者","attribute_value_mlt":[{"subitem_publisher":"情報処理学会","subitem_publisher_language":"ja"}]},"publish_status":"0","weko_shared_id":-1,"item_file_price":{"attribute_name":"Billing file","attribute_type":"file","attribute_value_mlt":[{"url":{"url":"https://ipsj.ixsq.nii.ac.jp/record/216992/files/IPSJ-DPS22190008.pdf","label":"IPSJ-DPS22190008.pdf"},"date":[{"dateType":"Available","dateValue":"2024-03-03"}],"format":"application/pdf","billing":["billing_file"],"filename":"IPSJ-DPS22190008.pdf","filesize":[{"value":"838.4 kB"}],"mimetype":"application/pdf","priceinfo":[{"tax":["include_tax"],"price":"660","billingrole":"5"},{"tax":["include_tax"],"price":"330","billingrole":"6"},{"tax":["include_tax"],"price":"0","billingrole":"34"},{"tax":["include_tax"],"price":"0","billingrole":"44"}],"accessrole":"open_date","version_id":"cb51a01c-e651-415e-8e96-65b424e55ef0","displaytype":"detail","licensetype":"license_note","license_note":"Copyright (c) 2022 by the Information Processing Society of Japan"}]},"item_4_creator_5":{"attribute_name":"著者名","attribute_type":"creator","attribute_value_mlt":[{"creatorNames":[{"creatorName":"加藤, 頑馬"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"高橋, 茶子"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"鈴木, 幸太郎"}],"nameIdentifiers":[{}]}]},"item_4_creator_6":{"attribute_name":"著者名(英)","attribute_type":"creator","attribute_value_mlt":[{"creatorNames":[{"creatorName":"Ganma, Kato","creatorNameLang":"en"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"Chako, Takahashi","creatorNameLang":"en"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"Koutarou, Suzuki","creatorNameLang":"en"}],"nameIdentifiers":[{}]}]},"item_4_source_id_9":{"attribute_name":"書誌レコードID","attribute_value_mlt":[{"subitem_source_identifier":"AN10116224","subitem_source_identifier_type":"NCID"}]},"item_4_textarea_12":{"attribute_name":"Notice","attribute_value_mlt":[{"subitem_textarea_value":"SIG Technical Reports are nonrefereed and hence may later appear in any journals, conferences, symposia, etc."}]},"item_resource_type":{"attribute_name":"資源タイプ","attribute_value_mlt":[{"resourceuri":"http://purl.org/coar/resource_type/c_18gh","resourcetype":"technical report"}]},"item_4_source_id_11":{"attribute_name":"ISSN","attribute_value_mlt":[{"subitem_source_identifier":"2188-8906","subitem_source_identifier_type":"ISSN"}]},"item_4_description_7":{"attribute_name":"論文抄録","attribute_value_mlt":[{"subitem_description":"教師データが少ない状況での分類は few-shot 分類と呼ばれ,その主要な実現方法の一つにメタ学習 (meta-learning) が知られている.Few-shot分類はさまざまな分野で実応用が検討され始めているが,敵対的攻撃や防御策についてはまだ十分に調べられていない.特に,メタ学習に基づく few-shot 分類に対するポイズニング攻撃についての研究は始まって間もなく,可用性の侵害を目的としたポイズニングについては Xu et al. [1] および Oldewage et al. [2] によって調べられているものの,完全性の侵害を目的としたバックドアポイズニングについては Oldewage et al. [2] によって限られた条件での簡易的な評価が行われているのみである.本研究では,メタ学習に基づく few-shot 分類において完全性の侵害を目的とするバックドアポイズニング攻撃を定式化する.実験により,model-agnostic meta-learning (MAML)[3] を用いたメタ学習による few-shot 分類に対してバックドアポイズニング攻撃が有効であることを確認した.","subitem_description_type":"Other"}]},"item_4_description_8":{"attribute_name":"論文抄録(英)","attribute_value_mlt":[{"subitem_description":"Few-shot classification is the classification with only a few samples, and meta-learning methods are often employed to solve it. Research on poisoning attacks against meta-learning-based few-shot classification is now in the very beginning. While poisoning to violate classifier's availability in meta-testing has been investigated in Xu et al. [1] and Oldewage et al. [2], backdoor poisoning in meta-testing has only been briefly evaluated by Oldewage et al. [2] under limited conditions. In this study, we formulate a backdoor poisoning attack on meta-learning-based few-shot classification. We show that the proposed backdoor poisoning attack is effective against the few-shot classification using model-agnostic meta-learning (MAML) [3] through experiments.","subitem_description_type":"Other"}]},"item_4_biblio_info_10":{"attribute_name":"書誌情報","attribute_value_mlt":[{"bibliographicPageEnd":"7","bibliographic_titles":[{"bibliographic_title":"研究報告マルチメディア通信と分散処理(DPS)"}],"bibliographicPageStart":"1","bibliographicIssueDates":{"bibliographicIssueDate":"2022-03-03","bibliographicIssueDateType":"Issued"},"bibliographicIssueNumber":"8","bibliographicVolumeNumber":"2022-DPS-190"}]},"relation_version_is_last":true,"weko_creator_id":"44499"},"id":216992,"updated":"2025-01-19T15:39:53.997485+00:00","links":{},"created":"2025-01-19T01:17:30.132050+00:00"}