On the Adversarial Robustness of Multi-Kernel Clustering
Hao Yu, Weixuan Liang, Ke Liang, Suyuan Liu, Meng Liu, Xinwang Liu
Abstract
Multi-kernel clustering (MKC) has emerged as a powerful method for capturing diverse data patterns, offering robust and generalized representations of data structures. However, the increasing deployment of MKC in real-world applications raises concerns about its vulnerability to adversarial perturbations. While adversarial robustness has been extensively studied in other domains, its impact on MKC remains largely unexplored. In this paper, we address the challenge of assessing the adversarial robustness of MKC methods in a black-box setting. Specifically, we propose AdvMKC, a novel reinforcement-learning-based adversarial attack framework designed to inject imperceptible perturbations into data and mislead MKC methods. AdvMKC leverages proximal policy optimization with an advantage function to overcome the instability of clustering results during optimization. Additionally, it introduces a generator-clusterer framework, where a generator produces adversarial perturbations, and a clusterer approximates MKC behavior, significantly reducing computational overhead. We provide theoretical insights into the impact of adversarial perturbations on MKC and validate these findings through experiments. Evaluations across seven datasets and eleven MKC methods (seven traditional and four robust) demonstrate AdvMKC's effectiveness, robustness, and transferability.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Cited by top-tier papers2
- Scalable Cross-View Sample Alignment for Multi-View Clustering with View Structure SimilarityJun Wang, Zhenglai Li, Chang Tang, Suyuan Liu et al.NeurIPS 2025
- Intra-view and Inter-view Correlation Guided Multi-view Novel Class DiscoveryXinhang Wan, Jiyuan Liu, Qian Qu, Suyuan Liu et al.ICCV 2025
Builds on18
- HopSkipJumpAttack: A Query-Efficient Decision-Based AttackJianbo Chen, Michael I. Jordan, Martin J. WainwrightS&P 2020 · 797 citations
- Adversarial Attacks on Graph Neural Networks via Node Injections: A Hierarchical Reinforcement Learning ApproachYiwei Sun, Suhang Wang, Xianfeng Tang, Tsung-Yu Hsieh et al.WWW 2020 · 217 citations
- Learning Black-Box Attackers with Transferable Priors and Query FeedbackJiancheng Yang, Yangzhou Jiang, Xiaoyang Huang, Bingbing Ni et al.NeurIPS 2020 · 96 citations
- Exploiting Variational Domain-Invariant User Embedding for Partially Overlapped Cross Domain RecommendationWeiming Liu, Xiaolin Zheng, Jiajie Su, Mengling Hu et al.SIGIR 2022 · 59 citations
- Multi-View Spectral Clustering with Optimal Neighborhood Laplacian MatrixSihang Zhou, Xinwang Liu, Jiyuan Liu, Xifeng Guo et al.AAAI 2020 · 56 citations
Related papers
- Adversarial Learning for Robust Deep ClusteringXu Yang, Cheng Deng, Kun Wei, Junchi Yan et al.NeurIPS 2020 · 77 citations
- Suspicion-Free Adversarial Attacks on Clustering AlgorithmsAnshuman Chhabra, Abhishek Roy, Prasant MohapatraAAAI 2020 · 32 citations
- Knowledge-enhanced Black-box Attacks for RecommendationsJingfan Chen, Wenqi Fan, Guanghui Zhu, Xiangyu Zhao et al.KDD 2022 · 44 citations
- Efficient Multiple Kernel Clustering via Spectral PerturbationChang Tang, Zhenglai Li, Weiqing Yan, Guanghui Yue et al.ACM MM 2022 · 9 citations
- Adversarially Robust Deep Multi-View Clustering: A Novel Attack and Defense FrameworkHaonan Huang, Guoxu Zhou, Yanghang Zheng, Yuning Qiu et al.ICML 2024 · 12 citations
