Timezone: »
Bootstrap aggregating (bagging) is an effective ensemble protocol, which is believed can enhance robustness by its majority voting mechanism. Recent works further prove the sample-wise robustness certificates for certain forms of bagging (e.g. partition aggregation). Beyond these particular forms, in this paper, we propose the first collective certification for general bagging to compute the tight robustness against the global poisoning attack. Specifically, we compute the maximum number of simultaneously changed predictions via solving a binary integer linear programming (BILP) problem. Then we analyze the robustness of vanilla bagging and give the upper bound of the tolerable poison budget. Based on this analysis, we propose hash bagging to improve the robustness of vanilla bagging almost for free. This is achieved by modifying the random subsampling in vanilla bagging to a hash-based deterministic subsampling, as a way of controlling the influence scope for each poisoning sample universally. Our extensive experiments show the notable advantage in terms of applicability and robustness. Our code is available at https://github.com/Emiyalzn/ICML22-CRB.
Author Information
Ruoxin Chen (Shanghai Jiao Tong University)
Zenan Li (Shanghai Jiao Tong University)
Jie Li (Shanghai Jiao Tong University)
Junchi Yan (Shanghai Jiao Tong University)
Chentao Wu (Shanghai Jiao Tong University)
Related Events (a corresponding poster, oral, or spotlight)
-
2022 Poster: On Collective Robustness of Bagging Against Data Poisoning »
Tue. Jul 19th through Wed the 20th Room Hall E #314
More from the Same Authors
-
2023 Poster: Towards Quantum Machine Learning for Constrained Combinatorial Optimization: a Quantum QAP Solver »
Xinyu Ye · Ge Yan · Junchi Yan -
2023 Poster: Patch-level Contrastive Learning via Positional Query for Visual Pre-training »
Shaofeng Zhang · Qiang Zhou · Zhibin Wang · Fan Wang · Junchi Yan -
2023 Poster: Quantum 3D Graph Learning with Applications to Molecule Embedding »
Ge Yan · Huaijin Wu · Junchi Yan -
2023 Poster: QAS-Bench: Rethinking Quantum Architecture Search and A Benchmark »
Xudong Lu · Kaisen Pan · Ge Yan · Jiaming Shan · Wenjie Wu · Junchi Yan -
2023 Poster: Understanding and Generalizing Contrastive Learning from the Inverse Optimal Transport Perspective »
Liangliang Shi · Gu Zhang · Haoyu Zhen · Jintao Fan · Junchi Yan -
2023 Poster: LinSATNet: The Positive Linear Satisfiability Neural Networks »
Runzhong Wang · Yunhao Zhang · Ziao Guo · Tianyi Chen · Xiaokang Yang · Junchi Yan -
2023 Poster: QuantumDARTS: Differentiable Quantum Architecture Search for Variational Quantum Algorithms »
Wenjie Wu · Ge Yan · Xudong Lu · Kaisen Pan · Junchi Yan -
2022 Poster: Deep Neural Network Fusion via Graph Matching with Applications to Model Ensemble and Federated Learning »
Chang Liu · Chenfei Lou · Runzhong Wang · Alan Yuhan Xi · Li Shen · Junchi Yan -
2022 Poster: GNNRank: Learning Global Rankings from Pairwise Comparisons via Directed Graph Neural Networks »
Yixuan He · Quan Gan · David Wipf · Gesine Reinert · Junchi Yan · Mihai Cucuringu -
2022 Spotlight: GNNRank: Learning Global Rankings from Pairwise Comparisons via Directed Graph Neural Networks »
Yixuan He · Quan Gan · David Wipf · Gesine Reinert · Junchi Yan · Mihai Cucuringu -
2022 Spotlight: Deep Neural Network Fusion via Graph Matching with Applications to Model Ensemble and Federated Learning »
Chang Liu · Chenfei Lou · Runzhong Wang · Alan Yuhan Xi · Li Shen · Junchi Yan -
2021 Poster: Towards Open-World Recommendation: An Inductive Model-based Collaborative Filtering Approach »
Qitian Wu · Hengrui Zhang · Xiaofeng Gao · Junchi Yan · Hongyuan Zha -
2021 Poster: Learning Self-Modulating Attention in Continuous Time Space with Applications to Sequential Recommendation »
Chao Chen · Haoyu Geng · Nianzu Yang · Junchi Yan · Daiyue Xue · Jianping Yu · Xiaokang Yang -
2021 Spotlight: Towards Open-World Recommendation: An Inductive Model-based Collaborative Filtering Approach »
Qitian Wu · Hengrui Zhang · Xiaofeng Gao · Junchi Yan · Hongyuan Zha -
2021 Spotlight: Learning Self-Modulating Attention in Continuous Time Space with Applications to Sequential Recommendation »
Chao Chen · Haoyu Geng · Nianzu Yang · Junchi Yan · Daiyue Xue · Jianping Yu · Xiaokang Yang -
2021 Poster: Deep Latent Graph Matching »
Tianshu Yu · Runzhong Wang · Junchi Yan · baoxin Li -
2021 Spotlight: Deep Latent Graph Matching »
Tianshu Yu · Runzhong Wang · Junchi Yan · baoxin Li -
2021 Poster: Rethinking Rotated Object Detection with Gaussian Wasserstein Distance Loss »
Xue Yang · Junchi Yan · Qi Ming · Wentao Wang · xiaopeng zhang · Qi Tian -
2021 Spotlight: Rethinking Rotated Object Detection with Gaussian Wasserstein Distance Loss »
Xue Yang · Junchi Yan · Qi Ming · Wentao Wang · xiaopeng zhang · Qi Tian