A black-box adversarial attack for poisoning clustering
作者:
Highlights:
• We propose a gradient-free optimization algorithm to effectively poison clustering algorithms.
• The algorithm possesses theoretically proven global convergence properties, meanwhile exceeding the performance of state-of-the-art algorithms.
摘要
•We propose a gradient-free optimization algorithm to effectively poison clustering algorithms.•The algorithm possesses theoretically proven global convergence properties, meanwhile exceeding the performance of state-of-the-art algorithms.
论文关键词:Adversarial learning,Unsupervised learning,Clustering,Robustness evaluation,Machine learning security
论文评审过程:Received 28 October 2020, Revised 23 August 2021, Accepted 6 September 2021, Available online 8 September 2021, Version of Record 17 September 2021.
论文官网地址:https://doi.org/10.1016/j.patcog.2021.108306