Evaluating robustness of support vector machines with the Lagrangian dual approach

被引:0
|
作者
Yuting Liu
Hong Gu
Pan Qin
机构
[1] Dalian University of Technology,School of Control Science and Engineering
来源
关键词
Support vector machines; Adversarial robustness; Robustness verification; Lagrangian duality; Subgradient method;
D O I
暂无
中图分类号
学科分类号
摘要
Adversarial examples bring a considerable security threat to support vector machines (SVMs), especially those used in safety-critical applications. Thus, robustness verification is an essential issue for SVMs, which can provide provable robustness against various adversarial attacks. The evaluation results obtained through robustness verification can provide a security guarantee for the use of SVMs. The existing verification method does not often perform well in verifying SVMs with nonlinear kernels. To this end, we propose a method to improve the verification performance for SVMs with nonlinear kernels. We first formalize the adversarial robustness evaluation of SVMs as an optimization problem with a feedforward neural network representation. Then, the lower bound of the original problem is obtained by solving the Lagrangian dual problem. Finally, the adversarial robustness of SVMs is evaluated concerning the lower bound. We evaluate the adversarial robustness of SVMs with linear and nonlinear kernels on the MNIST and Fashion-MNIST datasets. The experimental results show that our method achieves a higher percentage of provable robustness on the test set compared to the state-of-the-art.
引用
下载
收藏
页码:7991 / 8006
页数:15
相关论文
共 50 条
  • [31] Evaluating the generalization ability of support vector machines through the bootstrap
    Anguita, D
    Boni, A
    Ridella, S
    NEURAL PROCESSING LETTERS, 2000, 11 (01) : 51 - 58
  • [32] Evaluating the Generalization Ability of Support Vector Machines through the Bootstrap
    Davide Anguita
    Andrea Boni
    Sandro Ridella
    Neural Processing Letters, 2000, 11 : 51 - 58
  • [33] Unsupervised and Semi-supervised Lagrangian Support Vector Machines with Polyhedral Perturbations
    Zhao, Kun
    Liu, Yongsheng
    Deng, Naiyang
    2009 THIRD INTERNATIONAL SYMPOSIUM ON INTELLIGENT INFORMATION TECHNOLOGY APPLICATION, VOL 1, PROCEEDINGS, 2009, : 228 - +
  • [34] On consistency and robustness properties of Support Vector Machines for heavy-tailed distributions
    Christmann, Andreas
    Van Messem, Arnout
    Steinwart, Ingo
    STATISTICS AND ITS INTERFACE, 2009, 2 (03) : 311 - 327
  • [35] An implementation of training Dual-nu Support Vector Machines
    Chew, HG
    Lim, CC
    Bogner, RE
    Optimization And Control With Applications, 2005, 96 : 157 - 182
  • [36] Support Vector Machines Approach to HMA Stiffness Prediction
    Gopalakrishnan, Kasthurirangan
    Kim, Sunghwan
    JOURNAL OF ENGINEERING MECHANICS, 2011, 137 (02) : 138 - 146
  • [37] A subspace approach to face detection with support vector machines
    Ai, HZ
    Ying, LH
    Xu, GY
    16TH INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION, VOL I, PROCEEDINGS, 2002, : 45 - 48
  • [38] An approach to the learning curves of an incremental support vector machines
    Yamasaki, Takemasa
    Ikeda, Kazushi
    Nomura, Yoshihiko
    2007 IEEE SYMPOSIUM ON FOUNDATIONS OF COMPUTATIONAL INTELLIGENCE, VOLS 1 AND 2, 2007, : 466 - +
  • [39] A wrapper approach with support vector machines for text categorization
    Montanés, E
    Quevedo, JR
    Díaz, I
    COMPUTATIONAL METHODS IN NEURAL MODELING, PT 1, 2003, 2686 : 230 - 237
  • [40] An Genetic Approach to Support Vector Machines in classification problems
    Padilha, Carlos Alberto de A.
    Lima, Naiyan Hari C.
    Doria Neto, Adriao Duarte
    de Melo, Jorge Dantas
    2010 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS IJCNN 2010, 2010,