Evaluating robustness of support vector machines with the Lagrangian dual approach

被引:0
|
作者
Yuting Liu
Hong Gu
Pan Qin
机构
[1] Dalian University of Technology,School of Control Science and Engineering
来源
Neural Computing and Applications | 2024年 / 36卷
关键词
Support vector machines; Adversarial robustness; Robustness verification; Lagrangian duality; Subgradient method;
D O I
暂无
中图分类号
学科分类号
摘要
Adversarial examples bring a considerable security threat to support vector machines (SVMs), especially those used in safety-critical applications. Thus, robustness verification is an essential issue for SVMs, which can provide provable robustness against various adversarial attacks. The evaluation results obtained through robustness verification can provide a security guarantee for the use of SVMs. The existing verification method does not often perform well in verifying SVMs with nonlinear kernels. To this end, we propose a method to improve the verification performance for SVMs with nonlinear kernels. We first formalize the adversarial robustness evaluation of SVMs as an optimization problem with a feedforward neural network representation. Then, the lower bound of the original problem is obtained by solving the Lagrangian dual problem. Finally, the adversarial robustness of SVMs is evaluated concerning the lower bound. We evaluate the adversarial robustness of SVMs with linear and nonlinear kernels on the MNIST and Fashion-MNIST datasets. The experimental results show that our method achieves a higher percentage of provable robustness on the test set compared to the state-of-the-art.
引用
收藏
页码:7991 / 8006
页数:15
相关论文
共 50 条
  • [41] Extractive Support Vector Algorithm on Support Vector Machines for Image Restoration
    Yao, Chih-Chia
    Yu, Pao-Ta
    Hung, Ruo-Wei
    FUNDAMENTA INFORMATICAE, 2009, 90 (1-2) : 171 - 190
  • [42] A new training method for support vector machines:: Clustering k-NN support vector machines
    Comak, Emre
    Arslan, Ahmet
    EXPERT SYSTEMS WITH APPLICATIONS, 2008, 35 (03) : 564 - 568
  • [43] Two ellipsoid Support Vector Machines
    Czarnecki, Wojciech Marian
    Tabor, Jacek
    EXPERT SYSTEMS WITH APPLICATIONS, 2014, 41 (18) : 8211 - 8224
  • [44] Progressive refinement for support vector machines
    Wagstaff, Kiri L.
    Kocurek, Michael
    Mazzoni, Dominic
    Tang, Benyang
    DATA MINING AND KNOWLEDGE DISCOVERY, 2010, 20 (01) : 53 - 69
  • [45] An overview on twin support vector machines
    Ding, Shifei
    Yu, Junzhao
    Qi, Bingjuan
    Huang, Huajuan
    ARTIFICIAL INTELLIGENCE REVIEW, 2014, 42 (02) : 245 - 252
  • [46] Varying Coefficient Support Vector Machines
    Lu, Xiaoling
    Dong, Fengchi
    Liu, Xiexin
    Chang, Xiangyu
    STATISTICS & PROBABILITY LETTERS, 2018, 132 : 107 - 115
  • [47] Nonlinear modelling and support vector machines
    Suykens, JAK
    IMTC/2001: PROCEEDINGS OF THE 18TH IEEE INSTRUMENTATION AND MEASUREMENT TECHNOLOGY CONFERENCE, VOLS 1-3: REDISCOVERING MEASUREMENT IN THE AGE OF INFORMATICS, 2001, : 287 - 294
  • [48] Linear programming support vector machines
    Zhou, WD
    Zhang, L
    Jiao, LC
    PATTERN RECOGNITION, 2002, 35 (12) : 2927 - 2936
  • [49] Support Vector Machines with Neural Network
    Yanagimoto, Hidekazu
    NEW TRENDS IN INTELLIGENT SOFTWARE METHODOLOGIES, TOOLS AND TECHNIQUES, 2017, 297 : 124 - 138
  • [50] Hidden space support vector machines
    Zhang, L
    Zhou, WD
    Hao, LC
    IEEE TRANSACTIONS ON NEURAL NETWORKS, 2004, 15 (06): : 1424 - 1434