Source author record

Shanshan Peng

Shanshan Peng appears in the imported research catalog. Authorship, coauthor and topic links are available while profile ownership is still unclaimed.

ResearcherUnclaimed source record

Catalog footprint

What is connected

2works
4topics
4close collaborators

Actions

Connect this record

Log in to claim

Research graph

See the researcher in context

Open full explorer

Inspect adjacent papers, topics, institutions and collaborators without losing the researcher page.

Building this map preview

BZPEER is loading the nearby papers, people, topics and institutions for this page.

Published work

2 published item(s)

preprint2022arXiv

Model Agnostic Defence against Backdoor Attacks in Machine Learning

Machine Learning (ML) has automated a multitude of our day-to-day decision making domains such as education, employment and driving automation. The continued success of ML largely depends on our ability to trust the model we are using. Recently, a new class of attacks called Backdoor Attacks have been developed. These attacks undermine the user's trust in ML models. In this work, we present NEO, a model agnostic framework to detect and mitigate such backdoor attacks in image classification ML models. For a given image classification model, our approach analyses the inputs it receives and determines if the model is backdoored. In addition to this feature, we also mitigate these attacks by determining the correct predictions of the poisoned images. An appealing feature of NEO is that it can, for the first time, isolate and reconstruct the backdoor trigger. NEO is also the first defence methodology, to the best of our knowledge that is completely blackbox. We have implemented NEO and evaluated it against three state of the art poisoned models. These models include highly critical applications such as traffic sign detection (USTS) and facial detection. In our evaluation, we show that NEO can detect $\approx$88% of the poisoned inputs on average and it is as fast as 4.4 ms per input image. We also reconstruct the poisoned input for the user to effectively test their systems.

preprint2021arXiv

Exact exponential synchronization rate of high-dimensional Kuramoto models with identical oscillators and digraphs

For the high-dimensional Kuramoto model with identical oscillators under a general digraph that has a directed spanning tree, although exponential synchronization was proved under some initial state constraints, the exact exponential synchronization rate has not been revealed until now. In this paper, the exponential synchronization rate is precisely determined as the smallest non-zero real part of Laplacian eigenvalues of the digraph. Our obtained result extends the existing results from the special case of strongly connected balanced digraphs to the condition of general digraphs owning directed spanning trees, which is the weakest condition for synchronization from the aspect of network structure. Moreover, our adopted method is completely different from and much more elementary than the previous differential geometry method.