Patents by Inventor Xingjun Ma

Xingjun Ma has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 11275830
    Abstract: Systems and methods for video backdoor attack include a trigger generation module for generating a universal adversarial trigger pattern specific to a task, an adversarial perturbation module for producing videos with manipulated features; and a poisoning and inference module for injecting the generated trigger into perturbed videos as poisoned samples for training; wherein the trigger pattern is patched and optimized on videos from all non-target classes but relabeled to a target class, and the trigger pattern is a universal adversarial trigger pattern generated by minimizing the cross-entropy loss.
    Type: Grant
    Filed: January 26, 2021
    Date of Patent: March 15, 2022
    Assignee: FUDAN UNIVERSITY
    Inventors: Yugang Jiang, Shihao Zhao, Xingjun Ma, Jingjing Chen
  • Publication number: 20220027462
    Abstract: Systems and methods for video backdoor attack include a trigger generation module for generating a universal adversarial trigger pattern specific to a task, an adversarial perturbation module for producing videos with manipulated features; and a poisoning and inference module for injecting the generated trigger into perturbed videos as poisoned samples for training; wherein the trigger pattern is patched and optimized on videos from all non-target classes but relabeled to a target class, and the trigger pattern is a universal adversarial trigger pattern generated by minimizing the cross-entropy loss.
    Type: Application
    Filed: January 26, 2021
    Publication date: January 27, 2022
    Inventors: Yugang Jiang, Shihao Zhao, Xingjun Ma, Jingjing Chen
  • Patent number: 10783401
    Abstract: A method for generating black-box adversarial attacks on video recognition models is provided, comprising a) passing input video frames into a public image model, to obtain pixel-wise tentative perturbations; b) partitioning the tentative perturbations into tentative perturbation patches; c) estimating the rectification weight required for each patch, via querying the target video model; d) applying the patch-wise rectification weight on the patches, to obtain the rectified pixel-wise perturbations; e) applying one step projected gradient descent (PGD) perturbation on the input video, according to the rectified pixel-wise perturbations; and f) iteratively performing steps a)-e) until an attack succeeds or a query limit is reached. Systems and networks therefor are also provided.
    Type: Grant
    Filed: February 23, 2020
    Date of Patent: September 22, 2020
    Assignee: FUDAN UNIVERSITY
    Inventors: Yugang Jiang, Linxi Jiang, Xingjun Ma