Robust Nonparametric Regression under Poisoning Attack
Puning Zhao, Zhiguo Wan
Abstract
This paper studies robust nonparametric regression, in which an adversarial attacker can modify the values of up to q samples from a training dataset of size N . Our initial solution is an M-estimator based on Huber loss minimization. Compared with simple kernel regression, i.e. the Nadaraya-Watson estimator, this method can significantly weaken the impact of malicious samples on the regression performance. We provide the convergence rate as well as the corresponding minimax lower bound. The result shows that, with proper bandwidth selection, ℓ ∞ error is minimax optimal. The ℓ 2 error is optimal with relatively small q, but is suboptimal with larger q. The reason is that this estimator is vulnerable if there are many attacked samples concentrating in a small region. To address this issue, we propose a correction method by projecting the initial estimate to the space of Lipschitz functions. The final estimate is nearly minimax optimal for arbitrary q, up to a ln N factor. Preprint. Under review.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext e9bf9afd-1e08-42e0-84ca-f4d64255ff1aCited by top-tier papers3
- A Huber Loss Minimization Approach to Mean Estimation under User-level Differential PrivacyPuning Zhao, Lifeng Lai, Li Shen, Qingming Li et al.NeurIPS 2024 · 17 citations
- Adversarial Robustness of Nonparametric RegressionParsa Moradi, Hanzaleh Akbarinodehi, Mohammad Ali Maddah-AliNeurIPS 2025 · 1 citation
- Contextual Bandits for Unbounded Context DistributionsPuning Zhao, Rongfei Fan, Shaowei Wang, Li Shen et al.ICML 2025
Builds on3
- Manipulating Machine Learning: Poisoning Attacks and Countermeasures for Regression LearningMatthew Jagielski, Alina Oprea, Battista Biggio, Chang Liu et al.S&P 2018 · 867 citations
- Robust Regression Revisited: Acceleration and Improved Estimation RatesArun Jambulapati, Jerry Li, Tselil Schramm, Kevin TianNeurIPS 2021 · 18 citations
- Robust linear regression: optimal rates in polynomial timeAinesh Bakshi, Adarsh PrasadSTOC 2021 · 13 citations
Related papers
- Consistent Adversarially Robust Linear Classification: Non-Parametric SettingElvis DohmatobICML 2024 · 2 citations
- Online and Distribution-Free Robustness: Regression and Contextual Bandits with Huber ContaminationSitan Chen, Frederic Koehler, Ankur Moitra, Morris YauFOCS 2021 · 14 citations
- Robust Kernel Density Estimation with Median-of-Means principlePierre Humbert, Batiste Le Bars, Ludovic MinvielleICML 2022 · 19 citations
- Trimmed Maximum Likelihood Estimation for Robust Generalized Linear ModelPranjal Awasthi, Abhimanyu Das, Weihao Kong, Rajat SenNeurIPS 2022 · 9 citations
- Consistent regression when oblivious outliers overwhelmTommaso d'Orsi, Gleb Novikov, David SteurerICML 2021 · 16 citations
