Source author record

Yusuke Kawamoto

Yusuke Kawamoto appears in the imported research catalog. Authorship, coauthor and topic links are available while profile ownership is still unclaimed.

ResearcherUnclaimed source record

Catalog footprint

What is connected

7works
12topics
4close collaborators

Actions

Connect this record

Log in to claim

Research graph

See the researcher in context

Open full explorer

Inspect adjacent papers, topics, institutions and collaborators without losing the researcher page.

Building this map preview

BZPEER is loading the nearby papers, people, topics and institutions for this page.

Published work

7 published item(s)

preprint2023arXiv

Threats, Vulnerabilities, and Controls of Machine Learning Based Systems: A Survey and Taxonomy

In this article, we propose the Artificial Intelligence Security Taxonomy to systematize the knowledge of threats, vulnerabilities, and security controls of machine-learning-based (ML-based) systems. We first classify the damage caused by attacks against ML-based systems, define ML-specific security, and discuss its characteristics. Next, we enumerate all relevant assets and stakeholders and provide a general taxonomy for ML-specific threats. Then, we collect a wide range of security controls against ML-specific threats through an extensive review of recent literature. Finally, we classify the vulnerabilities and controls of an ML-based system in terms of each vulnerable asset in the system's entire lifecycle.

preprint2022arXiv

Homogeneous quasimorphisms, $C^0$-topology and Lagrangian intersection

We construct an example of a non-trivial homogeneous quasimorphism on the group of Hamiltonian diffeomorphisms of the two and four dimensional quadric hypersurfaces which is continuous with respect to both the $C^0$-metric and the Hofer metric. This answers a variant of a question of Entov--Polterovich--Py which is one of the open problems listed in the monograph of McDuff--Salamon. Throughout the proof, we make extensive use of the idea of working with different coefficient fields in quantum cohomology rings. As a by-product of the arguments in the paper, we answer a question of Polterovich--Wu regarding quasimorphisms on the group of Hamiltonian diffeomorphisms of the complex projective plane and prove some intersection results about Lagrangians in the four dimensional quadric hypersurface.

preprint2022arXiv

Information Leakage Games: Exploring Information as a Utility Function

A common goal in the areas of secure information flow and privacy is to build effective defenses against unwanted leakage of information. To this end, one must be able to reason about potential attacks and their interplay with possible defenses. In this paper, we propose a game-theoretic framework to formalize strategies of attacker and defender in the context of information leakage, and provide a basis for developing optimal defense methods. A novelty of our games is that their utility is given by information leakage, which in some cases may behave in a non-linear way. This causes a significant deviation from classic game theory, in which utility functions are linear with respect to players' strategies. Hence, a key contribution of this paper is the establishment of the foundations of information leakage games. We consider two kinds of games, depending on the notion of leakage considered. The first kind, the QIF-games, is tailored for the theory of quantitative information flow (QIF). The second one, the DP-games, corresponds to differential privacy (DP).

preprint2022arXiv

On $C^0$-continuity of the spectral norm for symplectically non-aspherical manifolds

The purpose of this paper is to study the relation between the $C^0$-topology and the topology induced by the spectral norm on the group of Hamiltonian diffeomorphisms of a closed symplectic manifold. Following the approach of Buhovsky-Humilière-Seyfaddini, we prove the $C^0$-continuity of the spectral norm for complex projective spaces and negative monotone symplectic manifolds. The case of complex projective spaces provides an alternative approach to the $C^0$-continuity of the spectral norm proven by Shelukhin. We also prove a partial $C^0$-continuity of the spectral norm for rational symplectic manifolds. Some applications such as the Arnold conjecture in the context of $C^0$-symplectic topology are also discussed.

preprint2017arXiv

Information Leakage Games

We consider a game-theoretic setting to model the interplay between attacker and defender in the context of information flow, and to reason about their optimal strategies. In contrast with standard game theory, in our games the utility of a mixed strategy is a convex function of the distribution on the defender's pure actions, rather than the expected value of their utilities. Nevertheless, the important properties of game theory, notably the existence of a Nash equilibrium, still hold for our (zero-sum) leakage games, and we provide algorithms to compute the corresponding optimal strategies. As typical in (simultaneous) game theory, the optimal strategy is usually mixed, i.e., probabilistic, for both the attacker and the defender. From the point of view of information flow, this was to be expected in the case of the defender, since it is well known that randomization at the level of the system design may help to reduce information leaks. Regarding the attacker, however, this seems the first work (w.r.t. the literature in information flow) proving formally that in certain cases the optimal attack strategy is necessarily probabilistic.

preprint2015arXiv

Quantitative Information Flow for Scheduler-Dependent Systems

Quantitative information flow analyses measure how much information on secrets is leaked by publicly observable outputs. One area of interest is to quantify and estimate the information leakage of composed systems. Prior work has focused on running disjoint component systems in parallel and reasoning about the leakage compositionally, but has not explored how the component systems are run in parallel or how the leakage of composed systems can be minimised. In this paper we consider the manner in which parallel systems can be combined or scheduled. This considers the effects of scheduling channels where resources may be shared, or whether the outputs may be incrementally observed. We also generalise the attacker's capability, of observing outputs of the system, to consider attackers who may be imperfect in their observations, e.g. when outputs may be confused with one another, or when assessing the time taken for an output to appear. Our main contribution is to present how scheduling and observation effect information leakage properties. In particular, that scheduling can hide some leaked information from perfect observers, while some scheduling may reveal secret information that is hidden to imperfect observers. In addition we present an algorithm to construct a scheduler that minimises the min-entropy leakage and min-capacity in the presence of any observer.

preprint2009arXiv

Higher homotopy commutativity and cohomology of finite H-spaces

We study connected mod p finite A_p-spaces admitting AC_n-space structures with n<p for an odd prime p. Our result shows that if n is greator than (p-1)/2, then the mod p Steenrod algebra acts on the mod p cohomology of such a space in a systematic way. Moreover, we consider A_p-spaces which are mod p homotopy equivalent to product spaces of odd dimensional spheres. Then we determine the largest integer n for which such a space admits an AC_n-space structure compatible with the A_p-space structure.