Week 3

2022/10/10 - 2022/10/16

Most experiments were completed.

1. Pre-processing

Experiment Settings:

  • Attacking 1000 images in the ImageNet dataset.

  • $L_{\inf}$ = 0.05

  • Max number of queries for each image = 1,000

Model Accuracy (1000 samples):

EnvironmentInception v3Resnet 50VGG16
Local Model75.90%70.90%65.20%
DeepAPI75.70%70.80%65.00%

Before Pre-processing (Local):

AttackAvg. QueriesAttack Success RateTotal Queries
IRVIRVIRV
SimBA745.40690.50630.753.04%4.33%5.13%745,000691,000631,000
Square178.4088.47102.1091.30%97.46%95.40%135,00062,70066,400
Bandits520.40403.00382.1041.37%55.01%57.52%520,000403,000382,000

After Pre-processing (Cloud):

AttackAvg. QueriesAttack Success RateTotal Queries
IRVIRVIRV
SimBA744.75697.60633.253.33%3.64%8.9%745,000697,000633,000
Square290.50194.15223.6083.01%92.15%88.30%222,000138,700145,100
Bandits683.35639.55596.2010.80%11.17%9.47%681,000639,000596,000

2. Distributed Queries

Distributed queries (8 workers):

Cloud Service1 query2 queries10 queries20 queries
Cloud Vision446.68ms353.61ms684.25ms1124.82ms
Imagga1688.11ms2331.81ms10775.75ms21971.77ms
DeepAPI (ours)538.47ms643.17ms1777.81ms1686.36ms

3. Distributed Attacks

Experiment Settings:

  • Attacking 100 images in the ImageNet dataset.

  • $L_{\inf}$ = 0.05

  • max number of queries for each image = 1,000

3.1 Non-Distributed:

AttackAvg. QueriesAttack Success RateTotal QueriesTime (min)
IRVIRVIRVIRV
SimBA775.10739.60729.702.56%4.00%2.70%77,50074,00073,000662638657
Square359.80200.10227.6078.21%93.33%91.89%28,10015,40016,80030181175
Bandits730.30688.30697.707.69%9.33%6.76%73,00068,80069,800758629670

3.2 Horizontal Distribution:

AttackAvg. QueriesAttack Success RateTotal QueriesTime (min)
IRVIRVIRVIRV
SimBA772.50738.80727.702.56%2.67%2.70%77,30073,90072,800148133226
Square359.80204.70222.8078.21%93.33%90.54%28,10015,40016,500482458
Bandits740.50672.60706.805.13%10.67%5.41%73,70067,00070,400221202292

3.3 Vertical Distribution:

AttackAvg. QueriesAttack Success RateTotal Queries
IRVIRVIRV
SimBA
Square
Bandits

Plan

  • Week 4: Draft

  • Week 5: Revision and Submission