Optimal Feature Manipulation Attacks Against Linear Regression

02/29/2020
by   Fuwei Li, et al.
0

In this paper, we investigate how to manipulate the coefficients obtained via linear regression by adding carefully designed poisoning data points to the dataset or modify the original data points. Given the energy budget, we first provide the closed-form solution of the optimal poisoning data point when our target is modifying one designated regression coefficient. We then extend the analysis to the more challenging scenario where the attacker aims to change one particular regression coefficient while making others to be changed as small as possible. For this scenario, we introduce a semidefinite relaxation method to design the best attack scheme. Finally, we study a more powerful adversary who can perform a rank-one modification on the feature matrix. We propose an alternating optimization method to find the optimal rank-one modification matrix. Numerical examples are provided to illustrate the analytical results obtained in this paper.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
10/20/2020

On the Adversarial Robustness of LASSO Based Feature Selection

In this paper, we investigate the adversarial robustness of feature sele...
research
08/17/2019

On the Adversarial Robustness of Subspace Learning

In this paper, we study the adversarial robustness of subspace learning ...
research
07/13/2022

Online Active Regression

Active regression considers a linear regression problem where the learne...
research
04/01/2018

Manipulating Machine Learning: Poisoning Attacks and Countermeasures for Regression Learning

As machine learning becomes widely used for automated decisions, attacke...
research
02/01/2019

Optimal Adversarial Attack on Autoregressive Models

We investigate optimal adversarial attacks against time series forecast ...
research
11/09/2020

A Fast Linear Regression via SVD and Marginalization

We describe a numerical scheme for evaluating the posterior moments of B...
research
09/13/2022

A Tale of HodgeRank and Spectral Method: Target Attack Against Rank Aggregation Is the Fixed Point of Adversarial Game

Rank aggregation with pairwise comparisons has shown promising results i...

Please sign up or login with your details

Forgot password? Click here to reset