Collaborative Research: SaTC: CORE: Small: Towards Secure and Trustworthy Tree Models

协作研究:SaTC:核心:小型:迈向安全可信的树模型

基本信息

  • 批准号:
    2247619
  • 负责人:
  • 金额:
    $ 29万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Standard Grant
  • 财政年份:
    2023
  • 资助国家:
    美国
  • 起止时间:
    2023-06-15 至 2026-05-31
  • 项目状态:
    未结题

项目摘要

Tree models are an important type of machine learning algorithm used in various applications such as finance, healthcare, and traffic management. They are particularly advantageous due to their simplicity and interpretability, making them well-suited for decision-making tasks, compared to complex neural networks that can be difficult to understand. However, despite their benefits, tree models are not immune to security and privacy concerns. Malicious actors can tamper with tree models or steal intellectual property, posing threats to the integrity and confidentiality of machine learning systems. Further, although there are studies of similar attacks on neural networks, differences between how neural networks and tree models work may affect how well those existing findings apply to tree models. Together, these issues mean there are a number of open questions around enhancing the security and trustworthiness of tree models. This project aims to develop novel strategies to address these questions and develop more robust and trustworthy AI-based systems, and develop both tools and educational opportunities through the work to make the findings widely available and impactful. Specifically, this project addresses the need for robust model authentication, watermarking for intellectual property tracing, machine unlearning for data privacy, and defense against backdoor attacks for tree models. The technical aims are organized around four tasks: a) Pursuing model identification by embedding unique signatures to generate differently embedded models; b) Developing novel methodologies of robust watermarking for tree models, for the purpose of tracing intellectual property; c) Designing novel algorithms for machine unlearning in tree models by exploiting tree reconstruction, residual-stable split, and combination of tree techniques; and d) Investigating the implications of backdoor attacks against tree models by leveraging the insights from the above tasks on tweaking tree models without significantly impacting the accuracy. These research efforts will contribute to the advancement of tree model security and trustworthiness, ensuring that these models can be reliably deployed in real-world applications while mitigating the risk of malicious attacks, unauthorized access, and privacy breaches.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
树模型是一种重要的机器学习算法,用于金融、医疗保健和交通管理等各种应用。与难以理解的复杂神经网络相比,它们由于简单性和可解释性而特别具有优势,使其非常适合决策任务。然而,尽管树模型有很多好处,但它也不能免受安全和隐私问题的影响。恶意行为者可以篡改树模型或窃取知识产权,对机器学习系统的完整性和机密性构成威胁。此外,尽管有针对神经网络的类似攻击的研究,但神经网络和树模型工作方式之间的差异可能会影响这些现有研究结果适用于树模型的效果。总之,这些问题意味着围绕增强树模型的安全性和可信度存在许多悬而未决的问题。该项目旨在制定新颖的策略来解决这些问题,开发更强大、更值得信赖的基于人工智能的系统,并通过工作开发工具和教育机会,使研究结果广泛传播并产生影响。具体来说,该项目解决了对稳健模型身份验证、知识产权追踪水印、数据隐私机器学习以及防御树模型后门攻击的需求。技术目标围绕四个任务进行组织:a)通过嵌入唯一签名来生成不同的嵌入模型来实现模型识别; b) 为树模型开发鲁棒水印的新方法,以追踪知识产权; c) 通过利用树重建、残差稳定分裂和树技术的组合,设计用于树模型中的机器取消学习的新颖算法; d) 利用上述任务的见解,在不显着影响准确性的情况下调整树模型,调查后门攻击对树模型的影响。这些研究工作将有助于提高树模型的安全性和可信度,确保这些模型能够可靠地部署在现实世界的应用中,同时降低恶意攻击、未经授权的访问和隐私泄露的风险。该奖项反映了 NSF 的法定使命和通过使用基金会的智力价值和更广泛的影响审查标准进行评估,该项目被认为值得支持。

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Weijie Zhao其他文献

Preparing Spectral Data for Machine Learning: A Study of Geological Classification from Aerial Surveys
为机器学习准备光谱数据:航空测量地质分类的研究
  • DOI:
  • 发表时间:
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Jun Woo;Alex Sim;Brian J. Quiter;Yuxin Wu;Weijie Zhao;K. Wu
  • 通讯作者:
    K. Wu
Two-Stream Attention 3-D Deep Network-Based Childhood Epilepsy Syndrome Classification
双流注意力基于 3D 深度网络的儿童癫痫综合征分类
Biomimetic synthesis of bis-α-substituent pyrrolidine alkaloids based on a proposed biosynthetic pathway
基于提议的生物合成途径的双-α-取代基吡咯烷生物碱的仿生合成
  • DOI:
    10.1016/j.tetlet.2016.03.104
  • 发表时间:
    2016-05-25
  • 期刊:
  • 影响因子:
    1.8
  • 作者:
    Z. Cao;Yueqing Li;Shisheng Wang;Bo Tang;Guo Xiuhan;Liu Wang;Weijie Zhao
  • 通讯作者:
    Weijie Zhao
Discussion on ‘‘Assessing feed-in tariffs on wind power installation and industry development in Taiwan” (Renewable and Sustainable Energy Reviews 2016; 58: 548–57)
关于“评估台湾风电装机上网电价和产业发展的讨论”(《可再生能源与可持续能源评论2016;58:548-57)》
Norm Adjusted Proximity Graph for Fast Inner Product Retrieval
用于快速内积检索的范数调整邻近图

Weijie Zhao的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

相似国自然基金

IGF-1R调控HIF-1α促进Th17细胞分化在甲状腺眼病发病中的机制研究
  • 批准号:
    82301258
  • 批准年份:
    2023
  • 资助金额:
    30 万元
  • 项目类别:
    青年科学基金项目
CTCFL调控IL-10抑制CD4+CTL旁观者激活促口腔鳞状细胞癌新辅助免疫治疗抵抗机制研究
  • 批准号:
    82373325
  • 批准年份:
    2023
  • 资助金额:
    49 万元
  • 项目类别:
    面上项目
RNA剪接因子PRPF31突变导致人视网膜色素变性的机制研究
  • 批准号:
    82301216
  • 批准年份:
    2023
  • 资助金额:
    30 万元
  • 项目类别:
    青年科学基金项目
血管内皮细胞通过E2F1/NF-kB/IL-6轴调控巨噬细胞活化在眼眶静脉畸形中的作用及机制研究
  • 批准号:
    82301257
  • 批准年份:
    2023
  • 资助金额:
    30 万元
  • 项目类别:
    青年科学基金项目
基于多元原子间相互作用的铝合金基体团簇调控与强化机制研究
  • 批准号:
    52371115
  • 批准年份:
    2023
  • 资助金额:
    50 万元
  • 项目类别:
    面上项目

相似海外基金

Collaborative Research: SaTC: CORE: Medium: Differentially Private SQL with flexible privacy modeling, machine-checked system design, and accuracy optimization
协作研究:SaTC:核心:中:具有灵活隐私建模、机器检查系统设计和准确性优化的差异化私有 SQL
  • 批准号:
    2317232
  • 财政年份:
    2024
  • 资助金额:
    $ 29万
  • 项目类别:
    Continuing Grant
Collaborative Research: NSF-BSF: SaTC: CORE: Small: Detecting malware with machine learning models efficiently and reliably
协作研究:NSF-BSF:SaTC:核心:小型:利用机器学习模型高效可靠地检测恶意软件
  • 批准号:
    2338302
  • 财政年份:
    2024
  • 资助金额:
    $ 29万
  • 项目类别:
    Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Using Intelligent Conversational Agents to Empower Adolescents to be Resilient Against Cybergrooming
合作研究:SaTC:核心:中:使用智能会话代理使青少年能够抵御网络诱骗
  • 批准号:
    2330940
  • 财政年份:
    2024
  • 资助金额:
    $ 29万
  • 项目类别:
    Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Using Intelligent Conversational Agents to Empower Adolescents to be Resilient Against Cybergrooming
合作研究:SaTC:核心:中:使用智能会话代理使青少年能够抵御网络诱骗
  • 批准号:
    2330941
  • 财政年份:
    2024
  • 资助金额:
    $ 29万
  • 项目类别:
    Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Differentially Private SQL with flexible privacy modeling, machine-checked system design, and accuracy optimization
协作研究:SaTC:核心:中:具有灵活隐私建模、机器检查系统设计和准确性优化的差异化私有 SQL
  • 批准号:
    2317233
  • 财政年份:
    2024
  • 资助金额:
    $ 29万
  • 项目类别:
    Continuing Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了