跳到主要导航 跳到搜索 跳到主要内容

Efficient Adversarial Sequence Generation for RNN with Symbolic Weighted Finite Automata

  • Mingjun Ma
  • , Dehui Du*
  • , Yuanhao Liu
  • , Yanyun Wang
  • , Yiyang Li
  • *此作品的通讯作者
  • East China Normal University

科研成果: 期刊稿件会议文章同行评审

摘要

Adversarial sequence generation plays an important role in improving the robustness of Recurrent Neural Networks (RNNs). However, there is still a lack of effective methods for RNN adversarial sequence generation. Due to the particular cyclic structure of RNN, the efficiency of adversarial attacks still need to be improved, and their perturbation is uncontrolled. To deal with these problems, we propose an efficient adversarial sequence generation approach for RNN with Symbolic Weighted Finite Automata (SWFA). The novelty is that RNN is extracted to SWFA with the symbolic extracting algorithm based on Fast k-DCP. The symbolic adversarial sequence can be generated in the symbolic space. It reduces the complexity of perturbation to improve the efficiency of adversarial sequence generation. More importantly, our approach keeps perturbation as much as possible within the human-invisible range. The feasibility of the approach is demonstrated with some autonomous driving datasets and several UCR time-series datasets. Experimental results show that our approach outperforms the state-of-art attack methods with almost 112.92% improvement and 1.44 times speedup in a human-invisible perturbation.

源语言英语
期刊CEUR Workshop Proceedings
3087
出版状态已出版 - 2022
活动2022 Workshop on Artificial Intelligence Safety, SafeAI 2022 - Virtual, Online
期限: 28 2月 202228 2月 2022

指纹

探究 'Efficient Adversarial Sequence Generation for RNN with Symbolic Weighted Finite Automata' 的科研主题。它们共同构成独一无二的指纹。

引用此