Robust Explanations for Private Support Vector Machines

02/07/2021
by   Rami Mochaourab, et al.
0

We consider counterfactual explanations for private support vector machines (SVM), where the privacy mechanism that publicly releases the classifier guarantees differential privacy. While privacy preservation is essential when dealing with sensitive data, there is a consequent degradation in the classification accuracy due to the introduced perturbations in the classifier weights. For such classifiers, counterfactual explanations need to be robust against the uncertainties in the SVM weights in order to ensure, with high confidence, that the classification of the data instance to be explained is different than its explanation. We model the uncertainties in the SVM weights through a random vector, and formulate the explanation problem as an optimization problem with probabilistic constraint. Subsequently, we characterize the problem's deterministic equivalent and study its solution. For linear SVMs, the problem is a convex second-order cone program. For non-linear SVMs, the problem is non-convex. Thus, we propose a sub-optimal solution that is based on the bisection method. The results show that, contrary to non-robust explanations, the quality of explanations from the robust solution degrades with increasing privacy in order to guarantee a prespecified confidence level for correct classifications.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
12/14/2022

Counterfactual Explanations for Support Vector Machine Models

We tackle the problem of computing counterfactual explanations – minimal...
research
06/27/2012

Poisoning Attacks against Support Vector Machines

We investigate a family of poisoning attacks against Support Vector Mach...
research
03/03/2022

Ensemble Methods for Robust Support Vector Machines using Integer Programming

In this work we study binary classification problems where we assume tha...
research
02/13/2016

Convex Optimization for Linear Query Processing under Approximate Differential Privacy

Differential privacy enables organizations to collect accurate aggregate...
research
06/16/2020

How Much Can I Trust You? – Quantifying Uncertainties in Explaining Neural Networks

Explainable AI (XAI) aims to provide interpretations for predictions mad...
research
10/16/2017

Spectral Algorithms for Computing Fair Support Vector Machines

Classifiers and rating scores are prone to implicitly codifying biases, ...
research
02/17/2022

Robust SVM Optimization in Banach spaces

We address the issue of binary classification in Banach spaces in presen...

Please sign up or login with your details

Forgot password? Click here to reset