arXiv · 2404.17358
Adversarial Consistency and the Uniqueness of the Adversarial Bayes Classifier
Abstract
Minimizing an adversarial surrogate risk is a common technique for learning robust classifiers. Prior work showed that convex surrogate losses are not statistically consistent in the adversarial context -- or in other words, a minimizing sequence of the adversarial surrogate risk will not necessarily minimize the adversarial classification error. We connect the consistency of adversarial surrogate losses to properties of minimizers to the adversarial classification risk, known as adversarial Bayes classifiers. Specifically, under reasonable distributional assumptions, a convex surrogate loss is statistically consistent for adversarial learning iff the adversarial Bayes classifier satisfies a certain notion of uniqueness.
Explore related subjects
Keep this discovery
Explore connections, maps & timelines
Natalie S. Frank. 2024-04-26. Adversarial Consistency and the Uniqueness of the Adversarial Bayes Classifier. https://doi.org/10.1017/s0956792525000038
Cite the original work for its findings. Save a collection to share your selection of sources.