Attacks on Online Learners: a Teacher-Student Analysis

Machine learning models are famously vulnerable to adversarial attacks: small ad-hoc perturbations of the data that can catastrophically alter the model predictions. While a large literature has studied the case of test-time attacks on pre-trained models, the important case of attacks in an online learning setting has received little attention so far. In this work, we use a control-theoretical perspective to study the scenario where an attacker may perturb data labels to manipulate the learning dynamics of an online learner. We perform a theoretical analysis of the problem in a teacher-student setup, considering different attack strategies, and obtaining analytical results for the steady state of simple linear learners. These results enable us to prove that a discontinuous transition in the learner's accuracy occurs when the attack strength exceeds a critical threshold. We then study empirically attacks on learners with complex architectures using real data, confirming the insights of our theoretical analysis. Our findings show that greedy attacks can be extremely efficient, especially when data stream in small batches.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/05/2019

Online Data Poisoning Attack

We study data poisoning attacks in the online learning setting where the...
research
03/02/2021

Online Adversarial Attacks

Adversarial attacks expose important vulnerabilities of deep learning mo...
research
06/06/2018

Adversarial Regression with Multiple Learners

Despite the considerable success enjoyed by machine learning techniques ...
research
03/07/2023

Exploring the Limits of Indiscriminate Data Poisoning Attacks

Indiscriminate data poisoning attacks aim to decrease a model's test acc...
research
11/24/2020

Lethean Attack: An Online Data Poisoning Technique

Data poisoning is an adversarial scenario where an attacker feeds a spec...
research
01/26/2021

Adversarial Vulnerability of Active Transfer Learning

Two widely used techniques for training supervised machine learning mode...
research
05/07/2020

How Peripheral Interactive Systems Can Support Teachers with Differentiated Instruction: Using FireFlies as a Probe

Teachers' response to the real-time needs of diverse learners in the cla...

Please sign up or login with your details

Forgot password? Click here to reset