arXiv · 2609.23688
Tail-Weight Control and Localized Generalization in Nearly Low-Rank Adversarial Classification
Abstract
We study norm-constrained linear classification under Eu clidean adversarial perturbations in a Gaussian model with a low-dimen sional informative subspace and an independent noise tail. For bounded ramp loss, we prove that a principal-space witness with risk below one half forces every near-optimal predictor to have small tail weight. A path-specific density bound yields constants without requiring positive tail variance. Under isotropic principal covariance, we establish a unique population minimizer and joint local growth. Boundary normalization then removes the common attack penalty from centered margins, giving localized finite-sample guarantees governed by principal dimension and total tail energy. Globalized growth removes the entrance condition at weaker constants; a model-aware comparison retains local guarantees. Experiments with twenty paired repetitions show decreasing excess risk and tail use with sample size, and nearly unchanged behavior when tail dimension grows at fixed total energy. Pure-noise controls and optimizer diagnostics clarify the scope and limitations of these conclusions.
Explore related subjects
Keep this discovery
Explore connections, maps & timelines
Kunyu Wang, Dehan Wang, Wenjun Chen. 2026-09-20. Tail-Weight Control and Localized Generalization in Nearly Low-Rank Adversarial Classification. https://arxiv.org/abs/2609.23688
Cite the original work for its findings. Save a collection to share your selection of sources.