84 research outputs found

    Adaptive Attractors: A Defense Strategy against ML Adversarial Collusion Attacks

    Full text link
    In the seller-buyer setting on machine learning models, the seller generates different copies based on the original model and distributes them to different buyers, such that adversarial samples generated on one buyer's copy would likely not work on other copies. A known approach achieves this using attractor-based rewriter which injects different attractors to different copies. This induces different adversarial regions in different copies, making adversarial samples generated on one copy not replicable on others. In this paper, we focus on a scenario where multiple malicious buyers collude to attack. We first give two formulations and conduct empirical studies to analyze effectiveness of collusion attack under different assumptions on the attacker's capabilities and properties of the attractors. We observe that existing attractor-based methods do not effectively mislead the colluders in the sense that adversarial samples found are influenced more by the original model instead of the attractors as number of colluders increases. Based on this observation, we propose using adaptive attractors whose weight is guided by a U-shape curve to cover the shortfalls. Experimentation results show that when using our approach, the attack success rate of a collusion attack converges to around 15% even when lots of copies are applied for collusion. In contrast, when using the existing attractor-based rewriter with fixed weight, the attack success rate increases linearly with the number of copies used for collusion

    After-effects of repetitive transcranial magnetic stimulation with parameter dependence on long-term potentiation-like plasticity and object recognition memory in rats

    Get PDF
    ObjectiveTo investigate the after-effects of 25-Hz repetitive transcranial magnetic stimulation (rTMS) at 60, 100, and 120% resting motor threshold (rMT) on long-term potentiation (LTP) in the rat hippocampus, to clarify the intensity dependence of rTMS, and to determine whether it simultaneously affects learning and memory ability.MethodsFive rats were randomly selected from 70 male Wistar rats, and evoked rMT potentials were recorded in response to magnetic stimulation. The remaining 65 rats were randomly assigned to five groups (n = 13), including sham rTMS, 1 Hz 100% rMT, and 25 Hz rTMS groups with 3 subgroups of 60% rMT, 100% rMT, and 120% rMT. Five rats in each group were anesthetized and induced by a priming TMS-test design for population spike (PS) response of the perforant path-dentate gyrus in the hippocampus; the remaining eight rats in each group were evaluated for object recognition memory in the novel object recognition (NOR) task after the different rTMS protocols.ResultsForty-five percent (approximately 1.03 T) of the magnetic stimulator output was confirmed as rMT in the biceps femoris muscle. The PS ratio was ranked as follows: 25 Hz 100% rMT (267.78 ± 25.71%) > sham rTMS (182 ± 9.4%) >1 Hz 100% rMT (102.69 ± 6.64%) > 25 Hz 120% rMT (98 ± 11.3%) > 25 Hz 60% rMT (36 ± 8.5%). Significant differences were observed between the groups, except for the difference between the 25 Hz 120% rMT and the 1 Hz 100% rMT groups (p = 0.446). LTP was successfully induced over the 60-min recording period only in the sham rTMS and 25 Hz 100% rMT groups. Moreover, these two groups spent more time exploring a novel object than a familiar object during the NOR task (p < 0.001), suggesting long-term recognition memory retention. In the between-group analysis of the discrimination index, the following ranking was observed: 25 Hz 100% rMT (0.812 ± 0.158) > sham rTMS (0.653 ± 0.111) > 25 Hz 120% rMT (0.583 ± 0.216) >1 Hz 100% rMT (0.581 ± 0.145) > 25 Hz 60% rMT (0.532 ± 0.220).ConclusionThe after-effect of 25-Hz rTMS was dependent on stimulus intensity and provided an inverted (V-shaped) bidirectional modulation on hippocampal plasticity that involved two forms of metaplasticity. Furthermore, the effects on the recognition memory ability were positively correlated with those on LTP induction in the hippocampus in vivo

    Effect of dietary Ginkgo biloba leaf on the growth performance and nonspecific immunity of red swamp crayfish Procambarus clarkii

    Get PDF
    This trial investigated the effect of dietary Ginkgo biloba leaf (GBL) on the growth performance and nonspecific immunity of red swamp crayfish Procambarus clarkii. 180 Crayfishes were randomly divided into three groups. One group was fed with basic diet, whereas the other two groups were fed with diets containing 1% and 3% GBL. After 32 days of feeding, GBL addition tended to increase the body weight gain rate compared with control. In 3% GBL group, the bodyweight gain rate of male crayfish was higher than that of female crayfish. While female crayfish were advantageous in terms of meat yield. Liver-related indexes were influenced by GBL addition and 3% GBL could reduce glutamic pyruvic transaminase and glutamic oxaloacetic transaminase as well as total cholesterol in male crayfish, showing its function in liver protection. Moreover, GBL addition effects on liver protection was better in male crayfish than female crayfish

    废旧动力电池中有色金属的创新回收方法

    Get PDF
    This paper explains the team's research and development of a new vertical eddy current sorting machine, which solves the problem of high pollution and high emission that cannot process small-size electronic waste, can only sort non-metals and metals, and cannot separate different metals at the same time. It is a kind of mechanical and physical equipment that can realize the separation between small non-metals and metals and different metals

    Automated detection of myopic maculopathy using five-category models based on vision outlooker for visual recognition

    Get PDF
    PurposeTo propose a five-category model for the automatic detection of myopic macular lesions to help grassroots medical institutions conduct preliminary screening of myopic macular lesions from limited number of color fundus images.MethodsFirst, 1,750 fundus images of non-myopic retinal lesions and four categories of pathological myopic maculopathy were collected, graded, and labeled. Subsequently, three five-classification models based on Vision Outlooker for Visual Recognition (VOLO), EfficientNetV2, and ResNet50 for detecting myopic maculopathy were trained with data-augmented images, and the diagnostic results of the different trained models were compared and analyzed. The main evaluation metrics were sensitivity, specificity, negative predictive value (NPV), positive predictive value (PPV), area under the curve (AUC), kappa and accuracy, and receiver operating characteristic curve (ROC).ResultsThe diagnostic accuracy of the VOLO-D2 model was 96.60% with a kappa value of 95.60%. All indicators used for the diagnosis of myopia-free macular degeneration were 100%. The sensitivity, NPV, specificity, and PPV for diagnosis of leopard fundus were 96.43, 98.33, 100, and 100%, respectively. The sensitivity, specificity, PPV, and NPV for the diagnosis of diffuse chorioretinal atrophy were 96.88, 98.59, 93.94, and 99.29%, respectively. The sensitivity, specificity, PPV, and NPV for the diagnosis of patchy chorioretinal atrophy were 92.31, 99.26, 97.30, and 97.81%, respectively. The sensitivity, specificity, PPV, and NPV for the diagnosis of macular atrophy were 100, 98.10, 84.21, and 100%, respectively.ConclusionThe VOLO-D2 model accurately identified myopia-free macular lesions and four pathological myopia-related macular lesions with high sensitivity and specificity. It can be used in screening pathological myopic macular lesions and can help ophthalmologists and primary medical institution providers complete the initial screening diagnosis of patients

    FORENSIC ANALYSIS AND DEFENSE FOR MACHINE LEARNING MODEL IN BLACK-BOXES

    No full text
    Ph.DDOCTOR OF PHILOSOPHY (SOC

    Bidirectional optical rotation of cells

    No full text
    Precise and controlled rotation manipulation of cells is extremely important in biological applications and biomedical studies. Particularly, bidirectional rotation manipulation of a single or multiple cells is a challenge for cell tomography and analysis. In this paper, we report an optical method that is capable of bidirectional rotation manipulation of a single or multiple cells. By launching a laser beam at 980 nm into dual-beam tapered fibers, a single or multiple cells in solutions can be trapped and rotated bidirectionally under the action of optical forces. Moreover, the rotational behavior can be controlled by altering the relative distance between the two fibers and the input optical power. Experimental results were interpreted by numerical simulations

    A Model Predictive Control for Heat Supply at Building Thermal Inlet Based on Data-Driven Model

    No full text
    At present, the traditional control strategy of heating systems is still unable to achieve building heating on demand, which enhances the energy consumption of heating and affects the thermal comfort of buildings. Therefore, this study puts forward a novel data-driven MPC for building thermal inlet, which allows the optimal operation of the district heating system and has been verified by simulation with three public buildings. In this method, the indoor temperature at the next moment reaches the temperature set value by changing the current flow rate. First, based on the energy consumption monitoring platform and the measured data of the buildings, the building indoor temperature prediction model at the next moment is established by using long short-term memory (LSTM). Compared with subspace model identification (SMI), LSTM has higher prediction accuracy, and the R2 was about 0.9 in three buildings. Second, the particle generated by particle swarm optimization, which represents the flow variation, is input to the trained LSTM to predict the indoor temperature. By minimizing the objective function, the optimal flow change at the current time can be calculated. The results showed that the MPC based on a data-driven model can adjust the flow rate in time to maintain a stable indoor temperature with ±0.5 °C error. In addition, when the temperature setting needs to be changed, the indoor temperature can reach the new set value in 3 h, which outperforms the PID control. The method proposed in this paper can greatly reduce the influence of regulation lag by adjusting the flow in advance
    corecore