Robust Aggregation with Adversarial Experts
Yongkang Guo, Yuqing Kong
Abstract
We consider a robust aggregation problem in the presence of both truthful and adversarial experts. The truthful experts will report their private signals truthfully, while the adversarial experts can report arbitrarily. We assume experts are marginally symmetric in the sense that they share the same common prior and marginal posteriors. The rule maker needs to design an aggregator to predict the true world state from these experts' reports, without knowledge of the underlying information structures or adversarial strategies. We aim to find the optimal aggregator that outputs a forecast minimizing regret under the worst information structure and adversarial strategies. The regret is defined by the difference in expected loss between the aggregator and a benchmark who aggregates optimally given the information structure and reports of truthful experts. We focus on binary states and reports. Under L1 loss, we show that the truncated mean aggregator is optimal. When there are at most k adversaries, this aggregator discards the k lowest and highest reported values and averages the remaining ones. For L2 loss, the optimal aggregators are piecewise linear functions. All the optimalities hold when the ratio of adversaries is bounded above by a value determined by the experts' priors and posteriors. The regret only depends on the ratio of adversaries, not on their total number. For hard aggregators that output a decision, we prove that a random version of the truncated mean is optimal for both L1 and L2. This aggregator randomly follows a remaining value after discarding the 𝑘 lowest and highest reported values. We extend the hard aggregator to multi-state setting. We evaluate our aggregators numerically in an ensemble learning task. We also obtain negative results for general adversarial aggregation problems under broader information structures and report spaces. CCS Concepts • Theory of computation → Algorithmic game theory; Algorithmic mechanism design.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext a40e5624-0c72-4640-b221-7ce0d17e1ddcCited by top-tier papers1
Ask how each one uses itBuilds on5
- Manipulating Machine Learning: Poisoning Attacks and Countermeasures for Regression LearningMatthew Jagielski, Alina Oprea, Battista Biggio, Chang Liu et al.S&P 2018 · 867 citations
- Adversarial Crowdsourcing Through Robust Rank-One Matrix CompletionQianqian Ma, Alex OlshevskyNeurIPS 2020 · 46 citations
- Data Poisoning Attacks and Defenses to Crowdsourcing SystemsMinghong Fang, Minghao Sun, Qi Li, Neil Zhenqiang Gong et al.WWW 2021 · 42 citations
- Information Elicitation from Rowdy CrowdsGrant Schoenebeck, Fang-Yi Yu, Yichi ZhangWWW 2021 · 18 citations
- Robust Decision Aggregation with Second-order InformationYuqi Pan, Zhaohua Chen, Yuqing KongWWW 2024 · 9 citations
Related papers
- Mitigating the Participation Bias by Balancing Extreme RatingsYongkang Guo, Yuqing Kong, Jialiang LiuWWW 2025 · 1 citation
- No-Regret Learning with Unbounded Losses: The Case of Logarithmic PoolingEric Neyman, Tim RoughgardenNeurIPS 2023 · 10 citations
- Sample Complexity of Forecast AggregationTao Lin, Yiling ChenNeurIPS 2023
- Communication Bounds for the Distributed Experts ProblemZhihao Jia, Qi Pang, Trung Tran, David P. Woodruff et al.NeurIPS 2024 · 1 citation
- On Robust Streaming for Learning with Experts: Algorithms and Lower BoundsDavid P. Woodruff, Fred Zhang, Samson ZhouNeurIPS 2023 · 7 citations
