Sharp Statistical Guarantees for Adversarially Robust Gaussian Classification

06/29/2020
by   Chen Dan, et al.
9

Adversarial robustness has become a fundamental requirement in modern machine learning applications. Yet, there has been surprisingly little statistical understanding so far. In this paper, we provide the first result of the optimal minimax guarantees for the excess risk for adversarially robust classification, under Gaussian mixture model proposed by <cit.>. The results are stated in terms of the Adversarial Signal-to-Noise Ratio (AdvSNR), which generalizes a similar notion for standard linear classification to the adversarial setting. For the Gaussian mixtures with AdvSNR value of r, we establish an excess risk lower bound of order Θ(e^-(1/8+o(1)) r^2d/n) and design a computationally efficient estimator that achieves this optimal rate. Our results built upon minimal set of assumptions while cover a wide spectrum of adversarial perturbations including ℓ_p balls for any p > 1.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
12/19/2018

Sharp optimal recovery in the Two Gaussian Mixture Model

In this paper, we study the non-asymptotic problem of exact recovery in ...
research
12/19/2018

Sharp optimal recovery in the Two Component Gaussian Mixture Model

In this paper, we study the problem of clustering in the Two component G...
research
12/18/2020

Adversarially Robust Estimate and Risk Analysis in Linear Regression

Adversarially robust learning aims to design algorithms that are robust ...
research
11/13/2021

Minimax Supervised Clustering in the Anisotropic Gaussian Mixture Model: A new take on Robust Interpolation

We study the supervised clustering problem under the two-component aniso...
research
02/14/2020

Optimal estimation of high-dimensional Gaussian mixtures

This paper studies the optimal rate of estimation in a finite Gaussian l...
research
05/31/2020

Estimating Principal Components under Adversarial Perturbations

Robustness is a key requirement for widespread deployment of machine lea...
research
05/27/2021

Lattice partition recovery with dyadic CART

We study piece-wise constant signals corrupted by additive Gaussian nois...

Please sign up or login with your details

Forgot password? Click here to reset