A Unified Framework for Data Poisoning Attack to Graph-based Semi-supervised Learning

10/30/2019
by   Xuanqing Liu, et al.
0

In this paper, we proposed a general framework for data poisoning attacks to graph-based semi-supervised learning (G-SSL). In this framework, we first unify different tasks, goals, and constraints into a single formula for data poisoning attack in G-SSL, then we propose two specialized algorithms to efficiently solve two important cases — poisoning regression tasks under ℓ_2-norm constraint and classification tasks under ℓ_0-norm constraint. In the former case, we transform it into a non-convex trust region problem and show that our gradient-based algorithm with delicate initialization and update scheme finds the (globally) optimal perturbation. For the latter case, although it is an NP-hard integer programming problem, we propose a probabilistic solver that works much better than the classical greedy method. Lastly, we test our framework on real datasets and evaluate the robustness of G-SSL algorithms. For instance, on the MNIST binary classification problem (50000 training data with 50 labeled), flipping two labeled data is enough to make the model perform like random guess (around 50% error).

READ FULL TEXT

page 1

page 2

page 3

page 4

research
12/06/2016

Semi-Supervised Learning with the Deep Rendering Mixture Model

Semi-supervised learning algorithms reduce the high cost of acquiring la...
research
10/28/2019

Shoestring: Graph-Based Semi-Supervised Learning with Severely Limited Labeled Data

Graph-based semi-supervised learning has been shown to be one of the mos...
research
11/19/2015

Semi-supervised Learning for Convolutional Neural Networks via Online Graph Construction

The recent promising achievements of deep learning rely on the large amo...
research
03/26/2017

Uncertainty Quantification in the Classification of High Dimensional Data

Classification of high dimensional data finds wide-ranging applications....
research
06/14/2017

Provable benefits of representation learning

There is general consensus that learning representations is useful for a...
research
01/17/2020

GraphBGS: Background Subtraction via Recovery of Graph Signals

Graph-based algorithms have been successful approaching the problems of ...

Please sign up or login with your details

Forgot password? Click here to reset