In supervised classification models, such as Support Vector Machine, the main purpose is to predict the class membership of the incoming samples. In some real applications malicious inputs are inserted to mislead a vulnerable classifier, leading to a wrong prediction. In our work we focus first on the problem of introducing the smallest perturbation of a sample to induce incorrect classification and then on how to produce a significant downgrading of the classifier acting on a subset of the input samples. The novelty of the proposed approach is in the attempt of calculating sparse perturbations by minimizing the relative ℓ0-pseudo-norm, which gives rise to a Difference of Convex (DC) optimization model. We present the results of some preliminary experiments.
DC optimization in adversarial sparse support vector machine
Di Francesco, Massimo;Gaudioso, Manlio;Gorgone, Enrico
;Manca, Benedetto
2025-01-01
Abstract
In supervised classification models, such as Support Vector Machine, the main purpose is to predict the class membership of the incoming samples. In some real applications malicious inputs are inserted to mislead a vulnerable classifier, leading to a wrong prediction. In our work we focus first on the problem of introducing the smallest perturbation of a sample to induce incorrect classification and then on how to produce a significant downgrading of the classifier acting on a subset of the input samples. The novelty of the proposed approach is in the attempt of calculating sparse perturbations by minimizing the relative ℓ0-pseudo-norm, which gives rise to a Difference of Convex (DC) optimization model. We present the results of some preliminary experiments.| File | Dimensione | Formato | |
|---|---|---|---|
|
978-3-031-81241-5_20.pdf
Solo gestori archivio
Tipologia:
versione editoriale (VoR)
Dimensione
372 kB
Formato
Adobe PDF
|
372 kB | Adobe PDF | Visualizza/Apri Richiedi una copia |
|
Accepted_Manuscript.pdf
accesso aperto
Tipologia:
versione pre-print
Dimensione
1.26 MB
Formato
Adobe PDF
|
1.26 MB | Adobe PDF | Visualizza/Apri |
I metadati presenti in IRIS UNICA sono rilasciati con licenza Creative Commons CC0 1.0 Universal, mentre i file delle pubblicazioni sono protetti da diritto d'autore, salvo diversa indicazione.



