The Consistency of Adversarial Training for Binary Classification

06/18/2022
by   Natalie S. Frank, et al.
0

Robustness to adversarial perturbations is of paramount concern in modern machine learning. One of the state-of-the-art methods for training robust classifiers is adversarial training, which involves minimizing a supremum-based surrogate risk. The statistical consistency of surrogate risks is well understood in the context of standard machine learning, but not in the adversarial setting. In this paper, we characterize which supremum-based surrogates are consistent for distributions absolutely continuous with respect to Lebesgue measure in binary classification. Furthermore, we obtain quantitative bounds relating adversarial surrogate risks to the adversarial classification risk. Lastly, we discuss implications for the -consistency of adversarial training.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
05/17/2023

The Adversarial Consistency of Surrogate Risks for Binary Classification

We study the consistency of surrogate risks for robust binary classifica...
research
06/18/2022

Existence and Minimax Theorems for Adversarial Surrogate Risks in Binary Classification

Adversarial training is one of the most popular methods for training met...
research
10/26/2020

Asymptotic Behavior of Adversarial Training in Binary Classification

It is widely known that several machine learning models are susceptible ...
research
01/15/2021

Fundamental Tradeoffs in Distributionally Adversarial Training

Adversarial training is among the most effective techniques to improve t...
research
09/10/2023

Outlier Robust Adversarial Training

Supervised learning models are challenged by the intrinsic complexities ...
research
04/20/2023

Can Perturbations Help Reduce Investment Risks? Risk-Aware Stock Recommendation via Split Variational Adversarial Training

In the stock market, a successful investment requires a good balance bet...
research
11/28/2022

Gamma-convergence of a nonlocal perimeter arising in adversarial machine learning

In this paper we prove Gamma-convergence of a nonlocal perimeter of Mink...

Please sign up or login with your details

Forgot password? Click here to reset