Characterizing the Evasion Attackability of Multi-label Classifiers

12/17/2020
by   Zhuo Yang, et al.
0

Evasion attack in multi-label learning systems is an interesting, widely witnessed, yet rarely explored research topic. Characterizing the crucial factors determining the attackability of the multi-label adversarial threat is the key to interpret the origin of the adversarial vulnerability and to understand how to mitigate it. Our study is inspired by the theory of adversarial risk bound. We associate the attackability of a targeted multi-label classifier with the regularity of the classifier and the training data distribution. Beyond the theoretical attackability analysis, we further propose an efficient empirical attackability estimator via greedy label space exploration. It provides provably computational efficiency and approximation accuracy. Substantial experimental results on real-world datasets validate the unveiled attackability factors and the effectiveness of the proposed empirical attackability indicator

READ FULL TEXT

page 1

page 2

page 3

page 4

research
06/29/2021

Attack Transferability Characterization for Adversarially Robust Multi-label Classification

Despite of the pervasive existence of multi-label evasion attack, it is ...
research
05/02/2019

Synthetic Oversampling of Multi-Label Data based on Local Label Distribution

Class-imbalance is an inherent characteristic of multi-label data which ...
research
01/02/2019

Multi-Label Adversarial Perturbations

Adversarial examples are delicately perturbed inputs, which aim to misle...
research
06/01/2022

One Positive Label is Sufficient: Single-Positive Multi-Label Learning with Label Enhancement

Multi-label learning (MLL) learns from the examples each associated with...
research
10/26/2014

Local Rademacher Complexity for Multi-label Learning

We analyze the local Rademacher complexity of empirical risk minimizatio...
research
01/13/2015

On Generalizing the C-Bound to the Multiclass and Multi-label Settings

The C-bound, introduced in Lacasse et al., gives a tight upper bound on ...
research
07/08/2022

A law of adversarial risk, interpolation, and label noise

In supervised learning, it has been shown that label noise in the data c...

Please sign up or login with your details

Forgot password? Click here to reset