On the Generalization Analysis of Adversarial Learning

被引:0
|
作者
Mustafa, Waleed [1 ]
Lei, Yunwen [2 ]
Kloft, Marius [1 ]
机构
[1] Univ Kaiserslautern, Dept Comp Sci, Kaiserslautern, Germany
[2] Univ Birmingham, Sch Comp Sci, Birmingham, W Midlands, England
来源
INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 162 | 2022年
关键词
BOUNDS;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Many recent studies have highlighted the susceptibility of virtually all machine-learning models to adversarial attacks. Adversarial attacks are imperceptible changes to an input example of a given prediction model. Such changes are carefully designed to alter the otherwise correct prediction of the model. In this paper, we study the generalization properties of adversarial learning. In particular, we derive high-probability generalization bounds on the adversarial risk in terms of the empirical adversarial risk, the complexity of the function class, and the adversarial noise set. Our bounds are generally applicable to many models, losses, and adversaries. We showcase its applicability by deriving adversarial generalization bounds for the multi-class classification setting and various prediction models (including linear models and Deep Neural Networks). We also derive optimistic adversarial generalization bounds for the case of smooth losses. These are the first fast-rate bounds valid for adversarial deep learning to the best of our knowledge.
引用
收藏
页数:23
相关论文
共 50 条
  • [1] The benefits of adversarial defense in generalization
    Oneto, Luca
    Ridella, Sandro
    Anguita, Davide
    NEUROCOMPUTING, 2022, 505 : 125 - 141
  • [2] An Error Analysis of Generative Adversarial Networks for Learning Distributions
    Huang, Jian
    Jiao, Yuling
    Li, Zhen
    Liu, Shiao
    Wang, Yang
    Yang, Yunfei
    JOURNAL OF MACHINE LEARNING RESEARCH, 2022, 23
  • [3] Compression, Generalization and Learning
    Campi, Marco C.
    Garatti, Simone
    JOURNAL OF MACHINE LEARNING RESEARCH, 2023, 24
  • [4] On the Stability and Generalization of Triplet Learning
    Chen, Jun
    Chen, Hong
    Jiang, Xue
    Gu, Bin
    Li, Weifu
    Gong, Tieliang
    Zheng, Feng
    THIRTY-SEVENTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 37 NO 6, 2023, : 7033 - 7041
  • [5] Generalization Analysis of CNNs for Classification on Spheres
    Feng, Han
    Huang, Shuo
    Zhou, Ding-Xuan
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2023, 34 (09) : 6200 - 6213
  • [6] Generalization Analysis of Transformers in Distribution Regression
    Liu, Peilin
    Zhou, Ding-Xuan
    NEURAL COMPUTATION, 2025, 37 (02) : 260 - 293
  • [7] Online Learning with Off-Policy Feedback in Adversarial MDPs
    Bacchiocchi, Francesco
    Stradi, Francesco Emanuele
    Papini, Matteo
    Metelli, Alberto Maria
    Gatti, Nicola
    PROCEEDINGS OF THE THIRTY-THIRD INTERNATIONAL JOINT CONFERENCE ON ARTIFICIAL INTELLIGENCE, IJCAI 2024, 2024, : 3697 - 3705
  • [8] Combining Adversarial Guarantees and Stochastic Fast Rates in Online Learning
    Koolen, Wouter M.
    Grunwald, Peter
    van Erven, Tim
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 29 (NIPS 2016), 2016, 29
  • [9] Efficient Reinforcement Learning in Deterministic Systems with Value Function Generalization
    Wen, Zheng
    Van Roy, Benjamin
    MATHEMATICS OF OPERATIONS RESEARCH, 2017, 42 (03) : 762 - 782
  • [10] On biased random walks, corrupted intervals, and learning under adversarial design
    Berend, Daniel
    Kontorovich, Aryeh
    Reyzin, Lev
    Robinson, Thomas
    ANNALS OF MATHEMATICS AND ARTIFICIAL INTELLIGENCE, 2020, 88 (08) : 887 - 905