On the Generalization Analysis of Adversarial Learning

被引:0
|
作者
Mustafa, Waleed [1 ]
Lei, Yunwen [2 ]
Kloft, Marius [1 ]
机构
[1] Univ Kaiserslautern, Dept Comp Sci, Kaiserslautern, Germany
[2] Univ Birmingham, Sch Comp Sci, Birmingham, W Midlands, England
来源
INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 162 | 2022年
关键词
BOUNDS;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Many recent studies have highlighted the susceptibility of virtually all machine-learning models to adversarial attacks. Adversarial attacks are imperceptible changes to an input example of a given prediction model. Such changes are carefully designed to alter the otherwise correct prediction of the model. In this paper, we study the generalization properties of adversarial learning. In particular, we derive high-probability generalization bounds on the adversarial risk in terms of the empirical adversarial risk, the complexity of the function class, and the adversarial noise set. Our bounds are generally applicable to many models, losses, and adversaries. We showcase its applicability by deriving adversarial generalization bounds for the multi-class classification setting and various prediction models (including linear models and Deep Neural Networks). We also derive optimistic adversarial generalization bounds for the case of smooth losses. These are the first fast-rate bounds valid for adversarial deep learning to the best of our knowledge.
引用
收藏
页数:23
相关论文
共 50 条
  • [41] On One Generalization of LRC Codes with Availability
    Kruglik, Stanislav
    Dudina, Marina
    Potapova, Valeriya
    Frolov, Alexey
    2017 IEEE INFORMATION THEORY WORKSHOP (ITW), 2017, : 26 - 30
  • [42] A generalization of a series for the density of abundant numbers
    Kobayashi, Mitsuo
    INTERNATIONAL JOURNAL OF NUMBER THEORY, 2016, 12 (03) : 671 - 677
  • [43] A polyhedral view to a generalization of multiple domination
    Neto, Jose
    DISCRETE APPLIED MATHEMATICS, 2022, 313 : 1 - 17
  • [44] A PRIORI ESTIMATES OF THE GENERALIZATION ERROR FOR AUTOENCODERS
    Dou, Zehao
    Weinan, E.
    Ma, Chao
    2020 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH, AND SIGNAL PROCESSING, 2020, : 3327 - 3331
  • [45] A generalization of the Bollobas set pairs inequality
    O'Neill, Jason
    Verstraete, Jacques
    ELECTRONIC JOURNAL OF COMBINATORICS, 2021, 28 (03):
  • [46] Generalization ability of fractional polynomial models
    Lei, Yunwen
    Ding, Lixin
    Ding, Yiming
    NEURAL NETWORKS, 2014, 49 : 59 - 73
  • [47] Dynamic Regret of Adversarial Linear Mixture MDPs
    Li, Long-Fei
    Zhao, Peng
    Zhou, Zhi-Hua
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 36 (NEURIPS 2023), 2023,
  • [48] Generalization of Samuelson's inequality and location of eigenvalues
    Sharma, R.
    Saini, R.
    PROCEEDINGS OF THE INDIAN ACADEMY OF SCIENCES-MATHEMATICAL SCIENCES, 2015, 125 (01): : 103 - 111
  • [49] Generalization Performance of Radial Basis Function Networks
    Lei, Yunwen
    Ding, Lixin
    Zhang, Wensheng
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2015, 26 (03) : 551 - 564
  • [50] A generalization of the Davis-Wielandt radius for operators
    Alomari, Mohammad W.
    Bakherad, Mojtaba
    Hajmohamadi, Monire
    BOLETIN DE LA SOCIEDAD MATEMATICA MEXICANA, 2024, 30 (02):