Fetching the paper…
Reading the bibliography…
Machine learning systems trained on user-provided data are susceptible to data poisoning attacks, whereby malicious users inject false training data with the aim of corrupting the learned model.
Practical Bilevel Optimization: Algorithms and Applications
J. F. Bard · 1999
Earlier work this paper cites.
Using SeDuMi 1.02, a MATLAB toolbox for optimization over symmetric cones
J. F. Sturm · 1999
Earlier work this paper cites.
The art and science of computer security
M. A. Bishop · 2002
Earlier work this paper cites.
Diagnosing network-wide traffic anomalies
A. Lakhina, M. Crovella, and C. Diot · 2004
Earlier work this paper cites.
YALMIP: A toolbox for modeling and optimization in MATLAB
J. Löfberg · 2004
Earlier work this paper cites.
Spam filtering with naive Bayes – which naive Bayes?
V. Metsis, I. Androutsopoulos, and G. Paliouras · 2006
Earlier work this paper cites.
Paragraph: Thwarting signature learning by training maliciously
J. Newsome, B. Karp, and D. Song · 2006
Earlier work this paper cites.
Casting out demons: Sanitizing training data for anomaly sensors
G. F. Cretu, A. Stavrou, M. E. Locasto, S. J. Stolfo, and A. D. Keromytis · 2008
Earlier work this paper cites.
On the complexity of linear prediction: Risk bounds, margin bounds, and regularization
S. M. Kakade, K. Sridharan, and A. Tewari · 2009
Earlier work this paper cites.
Learning halfspaces with malicious noise
A. R. Klivans, P. M. Long, and R. A. Servedio · 2009
Earlier work this paper cites.
Antidote: Understanding and defending against poisoning of anomaly detectors
B. Rubinstein, B. Nelson, L. Huang, A. D. Joseph, S. Lau, S. Rao, N. Taft, and J. Tygar · 2009
Earlier work this paper cites.
The security of machine learning
M. Barreno, B. Nelson, A. D. Joseph, and J. D. Tygar · 2010
Earlier work this paper cites.
Dual averaging methods for regularized stochastic learning and online optimization
L. Xiao · 2010
Earlier work this paper cites.
Stackelberg games for adversarial prediction problems
M. Brückner and T. Scheffer · 2011
Earlier work this paper cites.
Learning word vectors for sentiment analysis
A. L. Maas, R. E. Daly, P. T. Pham, D. Huang, A. Y. Ng, and C. Potts · 2011
Earlier work this paper cites.
Robust lasso with missing and grossly corrupted observations
N. M. Nasrabadi, T. D. Tran, and N. Nguyen · 2011
Earlier work this paper cites.
Online learning and online convex optimization
S. Shalev-Shwartz · 2011
Earlier work this paper cites.
How much spam can you take? An analysis of crowdsourcing results to increase accuracy
J. Vuurens, A. P. de Vries, and C. Eickhoff · 2011
Earlier work this paper cites.
Poisoning attacks against support vector machines
B. Biggio, B. Nelson, and P. Laskov · 2012
Earlier work this paper cites.
Static prediction games for adversarial learning problems
M. Brückner, C. Kanzow, and T. Scheffer · 2012
Cited alongside, same era.
Adversarial label flips attack on support vector machines
H. Xiao, H. Xiao, and C. Eckert · 2012
Cited alongside, same era.
Is data clustering in adversarial settings secure?
B. Biggio, I. Pillai, S. R. Bulò, D. Ariu, M. Pelillo, and F. Roli · 2013
Cited alongside, same era.
Robust high dimensional sparse regression and matching pursuit
Y. Chen, C. Caramanis, and S. Mannor · 2013
Cited alongside, same era.
Exact recoverability from dense corrupted observations via ℓ 1 \ell_{1} -minimization
N. H. Nguyen and T. D. Tran · 2013
Cited alongside, same era.
The power of localization for efficiently learning linear separators with noise
P. Awasthi, M. F. Balcan, and P. M. Long · 2014
Cited alongside, same era.
Gurobi optimizer reference manual, 2016
Gurobi Optimization, Inc · 2016
Later among the works it cites.
Adversarial examples in the physical world
A. Kurakin, I. Goodfellow, and S. Bengio · 2016
Later among the works it cites.
Agnostic estimation of mean and covariance
K. A. Lai, A. B. Rao, and S. Vempala · 2016
Later among the works it cites.
Curie: A method for protecting SVM classifier from poisoning attack
R. Laishram and V. V. Phoha · 2016
Later among the works it cites.
Data poisoning attacks on factorization-based collaborative filtering
B. Li, Y. Wang, A. Singh, and Y. Vorobeychik · 2016
Later among the works it cites.
The teaching dimension of linear learners
J. Liu and X. Zhu · 2016
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Generative adversarial nets
I. J. Goodfellow, J. Pouget-Abadie, M. Mirza, B. Xu, D. Warde-Farley, S. Ozair, A. Courville, and Y. Bengio · 2014
Cited alongside, same era.
Practical evasion of a learning-based classifier: A case study
P. Laskov and N. Šrndic̀ · 2014
Cited alongside, same era.
On the practicality of integrity attacks on document-level sentiment analysis
A. Newell, R. Potharaju, L. Xiang, and C. Nita-Rotaru · 2014
Cited alongside, same era.
The statistics of streaming sparse regression
J. Steinhardt, S. Wager, and P. Liang · 2014
Cited alongside, same era.
Intriguing properties of neural networks
C. Szegedy, W. Zaremba, I. Sutskever, J. Bruna, D. Erhan, I. Goodfellow, and R. Fergus · 2014
Cited alongside, same era.
Robust regression via hard thresholding
K. Bhatia, P. Jain, and P. Kar · 2015
Cited alongside, same era.
Avoiding imposters and delinquents: Adversarial crowdsourcing and peer prediction
J. Steinhardt, G. Valiant, and M. Charikar · 2016
Later among the works it cites.
Stealing machine learning models via prediction APIs
F. Tramèr, F. Zhang, A. Juels, M. K. Reiter, and T. Ristenpart · 2016
Later among the works it cites.
Combating Attacks and Abuse in Large Online Communities
G. Wang · 2016
Later among the works it cites.
Modeling adversarial learning as nested Stackelberg games
Y. Zhou and M. Kantarcioglu · 2016
Later among the works it cites.
Vulnerability of deep reinforcement learning to policy induction attacks
V. Behzadan and A. Munir · 2017
Closest in time.
Analysis of causative attacks against SVMs learning from data streams
C. Burkard and B. Lagesse · 2017
Closest in time.
Learning from untrusted data
M. Charikar, J. Steinhardt, and G. Valiant · 2017
Closest in time.
Adversarial attacks on neural network policies
S. Huang, N. Papernot, I. Goodfellow, Y. Duan, and P. Abbeel · 2017
Closest in time.
Understanding black-box predictions via influence functions
P. W. Koh and P. Liang · 2017
Closest in time.
Tactics of adversarial attack on deep reinforcement learning agents
Y. Lin, Z. Hong, Y. Liao, M. Shih, M. Liu, and M. Sun · 2017
Closest in time.
Resilient linear classification: an approach to deal with attacks on training data
S. Park, J. Weimer, and I. Lee · 2017
Closest in time.
Generative poisoning attack method against neural networks
C. Yang, Q. Wu, H. Li, and Y. Chen · 2017
Closest in time.