2. w ॴଐஜେֶത࢜લظ՝ఔ
w /8(PPHMF1I%'FMMPXTIJQ
w ࠷ۙͷझຯࣙԓͰ༡Ϳ
w ͨ΄͍ݟग़͠ޠͷِͷҙຯΛߟ͑ͯὃ͠߹͏ήʔϜ
w ʲ͜Γ͓ΒΜʳ
ϥϯՊ২ͷҰͭɻ౦ೆΞδΞʹɻ
ϕʔτʔϕϯͷۂָݭɻϑϥϯεͷఱจֶऀ
Ֆ༄քͰɺͳ͔ͳ͔ؼΒͳ͍٬Λࢦ͢ޠɻ
ઘڸՖʹΑΔখઆɻେਖ਼͔Βʰଠཅʱʹ࿈ࡌɻ
w ୯७ʹؒͷݟग़͠ޠΛͯΔΫΠζͳͲָ͍͠
w ᅏ᳴ʢϋγϏϩίʣˠʓʓʓˠṟାʢ͠Ϳ͘Ζʣ
ࣗݾհ
!IJSPNV
6. Robust Audio Adversarial
Example for a Physical Attack
Hiromu Yakura*†, Jun Sakuma*†
* University of Tsukuba, Japan
† RIKEN Center for Artificial Intelligence Project, Japan
IJCAI 2020
7. എܠEWFSTBSJBMYBNQMFʹΑΔػցֶशͷ߈ܸ
I. J. Goodfellow, et al. Explaining and harnessing adversarial examples. ICLR 2015.
͜͏͍ͬͨEWFSTBSJBMYBNQMFʹΑͬͯɺ
ਓؒʹ͔ͮؾΕͣʹ*Λ༻͍ͨγεςϜΛѱ༻Ͱ͖Δ
w σʔλʹҙਤతʹখ͞ͳϊΠζΛՃ͑Δ͜ͱͰɺ
ػցֶशγεςϜΛؒҧΘͤΔ͜ͱ͕Ͱ͖Δ
w ԼهͷྫͰɺը૾ྨγεςϜʹύϯμͷσʔλΛ
ςφΨβϧͱೝࣝͤ͞Δ͜ͱ͕Ͱ͖Δ(PPEGFMMPX
8. എܠVEJPEWFSTBSJBMYBNQMFʹΑΔ߈ܸՄೳੑ
N. Carlini, et al. Audio Adversarial Examples: Targeted Attacks on Speech-to-Text. IEEE DLS 2018.
w 4JSJͳͲͷԻΞγελϯτ
(PPHMF)PNFͳͲͷεϚʔτεϐʔΧ͕ීٴ
w EWFSTBSJBMYBNQMFʹΑͬͯɺώτʹ͔ͮؾΕΔ͜ͱͳ͘
ԻೝࣝσόΠεʹ໋ྩͰ͖ΔՄೳੑ͋Δ
w ը૾ͷ߹ͱҟͳΓɺςϨϏϥδΦͰ֦ࢄ͢Ε
େྔͷσόΠεΛಉ࣌ʹ߈ܸ͢Δ͜ͱ͕Ͱ͖Δ
ԻೝࣝϞσϧը૾ೝࣝΑΓෳࡶͳͨΊ
ϊΠζͷӨڹ͋Δ࣮ੈքͰͷ߈ܸ͍͠$BSMJOJ
10. Generate (non-software) Bugs
to Fool Classifiers
Hiromu Yakura*†, Youhei Akimoto*†, Jun Sakuma*†
* University of Tsukuba, Japan
† RIKEN Center for Artificial Intelligence Project, Japan
AAAI 2020
11. ఏҊώτʹո͠·Εͳ͍ࣗಈӡసंͷ߈ܸ
S. Chen, et al. Shapeshifter: Robust physical adversarial attack on faster RCNN object detector. ECML PKDD 2018.
w EWFSTBSJBMYBNQMFࣗಈӡసंͷ߈ܸͷϦεΫ͋Δ
w ʮࢭ·ΕʯΛʮʯͱޡೝࣝͤ͞Ε͢Δ͔
w ͰࠨͷྫͷΑ͏ͳ༷ͩͱ͕͢͞ʹਓؒͮ͘ؾ
[Chen+, '18]
Proposed
w ಛʹɺӡసதʹͨ͑ݟಓ࿏ඪࣝʹի͕ࢭ·͍ͬͯͯ
ଟ͘ͷਓ͍͋͠ͱࢥΘͳ͍ͣ
իͷΑ͏ͳεςοΧʔͰػցֶशϞσϧΛὃ͢͜ͱͰ
ώτʹҧײΛ࣋ͨͤͣʹѱ༻Ͱ͖ΔՄೳੑΛࣔͨ͠
16. J. R. Zech, et al.: Variable generalization performance of a deep learning model to detect pneumonia in chest radiographs. PLoS Medicine 15(e1002683). 2018.
17. FocusMusicRecommender:
A System for Recommending Music
to Listen to While Working
Hiromu Yakura†, Tomoyasu Nakano‡, Masataka Goto‡
† University of Tsukuba, Japan
‡ AIST, Japan
ACM IUI 2018
22. Neural Malware Analysis
with Attention Mechanism
Hiromu Yakura*†, Shinnosuke Shinozaki*, Reon Nishimura*,
Yoshihiro Oyama*, Jun Sakuma*†
* University of Tsukuba, Japan
† RIKEN Center for Artificial Intelligence Project, Japan
ACM CODASPY 2018 / Computers and Security 2019
25. REsCUE: A framework for
REal-time feedback on behavioral CUEs
using multimodal anomaly detection
Riku Arakawa† and Hiromu Yakura‡
(equal contribution)
† The University of Tokyo, Japan
‡ University of Tsukuba, Japan
ACM CHI 2019
29. Mindless Attractor: A False-Positive Resistant
Intervention for Drawing Attention
Using Auditory Perturbation
ACM CHI 2021
Riku Arakawa† and Hiromu Yakura‡
(equal contribution)
† The University of Tokyo, Japan
‡ University of Tsukuba, Japan