惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

U
Unit 42
V
V2EX
Martin Fowler
Martin Fowler
博客园 - Franky
P
Proofpoint News Feed
P
Palo Alto Networks Blog
H
Hackread – Cybersecurity News, Data Breaches, AI and More
B
Blog
The Register - Security
The Register - Security
Latest news
Latest news
S
Security @ Cisco Blogs
Simon Willison's Weblog
Simon Willison's Weblog
Recorded Future
Recorded Future
大猫的无限游戏
大猫的无限游戏
M
Microsoft Research Blog - Microsoft Research
Scott Helme
Scott Helme
T
Tailwind CSS Blog
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Application and Cybersecurity Blog
Application and Cybersecurity Blog
T
True Tiger Recordings
有赞技术团队
有赞技术团队
I
Intezer
Cisco Talos Blog
Cisco Talos Blog
Hacker News - Newest:
Hacker News - Newest: "LLM"
The GitHub Blog
The GitHub Blog
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
T
Tenable Blog
博客园 - 叶小钗
Hugging Face - Blog
Hugging Face - Blog
Hacker News: Ask HN
Hacker News: Ask HN
S
Security Archives - TechRepublic
F
Future of Privacy Forum
爱范儿
爱范儿
PCI Perspectives
PCI Perspectives
H
Help Net Security
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
T
The Blog of Author Tim Ferriss
MyScale Blog
MyScale Blog
N
Netflix TechBlog - Medium
罗磊的独立博客
Apple Machine Learning Research
Apple Machine Learning Research
MongoDB | Blog
MongoDB | Blog
Security Latest
Security Latest
美团技术团队
博客园 - 三生石上(FineUI控件)
S
Schneier on Security
量子位
C
CERT Recently Published Vulnerability Notes
SecWiki News
SecWiki News

cs.LG updates on arXiv.org

Memory-R2: Fair Credit Assignment for Long-Horizon Memory-Augmented LLM Agents Three Costs of Amortizing Gaussian Process Inference with Neural Processes Objective-Induced Bias and Search Dynamics in Multiobjective Unsupervised Feature Selection Representation Gap: Explaining the Unreasonable Effectiveness of Neural Networks from a Geometric Perspective Predicting Performance of Symbolic and Prompt Programs with Examples Leveraging Self-Paced Curriculum Learning for Enhanced Modality Balance in Multimodal Conversational Emotion Recognition Manifold-Guided Attention Steering Harnesses for Inference-Time Alignment over Execution Trajectories Embedding-Based Federated Learning with Runtime Governance for Iron Deficiency Prediction TBP-mHC: full expressivity for manifold-constrained hyper connections through transportation polytopes MMD-Balls as Credal Sets: A PAC-Bayesian Framework for Epistemic Uncertainty in Test-Time Adaptation Expectation Consistency Loss: Rethink Confidence Calibration under Covariate Shift The Attribution Impossibility: No Feature Ranking Is Faithful, Stable, and Complete Under Collinearity Dropout Universality: Scaling Laws and Optimal Scheduling at the Edge-of-Chaos stable-worldmodel: A Platform for Reproducible World Modeling Research and Evaluation Correcting Class Imbalance in Prior-Data Fitted Networks for Tabular Classification PeakFocus: Bridging Peak Localization and Intensity Regression via a Unified Multi-Scale Framework for Electricity Load Forecasting TONIC: Token-Centric Semantic Communication for Task-Oriented Wireless Systems Tabular foundation models for robust calibration of near-infrared chemical sensing data Provable Joint Decontamination for Benchmarking Multiple Large Language Models Alike Parts: A Feature-Informed Approach to Local and Global Prototype Explanations I-SAFE: Wasserstein Coherence Metrics for Structural Auditing of Scientific AI Models Position: The Time for Sampling Is Now! Charting a New Course for Bayesian Deep Learning Same Architecture, Different Capacity: Optimizer-Induced Spectral Scaling Laws $\textit{BlockFormer}$ : Transformer-based inference from interaction maps Models Can Model, But Can't Bind: Structured Grounding in Text-to-Optimization Temporal Contrastive Transformer for Financial Crime Detection: Self-Supervised Sequence Embeddings via Predictive Contrastive Coding Double descent for least-squares interpolation on contaminated data: A simulation study A Reproducible Log-Driven AutoML Framework for Interpretable Pipeline Optimization in Healthcare Risk Prediction When Are Teacher Tokens Reliable? Position-Weighted On-Policy Self-Distillation for Reasoning PEARL: Unbiased Percentile Estimation via Contrastive Learning for Industrial-Scale Livestream Recommendation Discovering Entity-Conditioned Lag Heterogeneity: A Lag-Gated Neural Audit Framework for Panel Time Series On the Sample Complexity of Discounted Reinforcement Learning with Optimized Certainty Equivalents ConTact: Contact-First Antibody CDR Design via Explicit Interface Reasoning Calibration, Uncertainty Communication, and Deployment Readiness in CKD Risk Prediction: A Framework Evaluation Study AutoMCU: Feasibility-First MCU Neural Network Customization via LLM-based Multi-Agent Systems Equilibrium Propagation and Hamiltonian Inference in the Diffusive Fitzhugh-Nagumo Model Beyond Single Slot: Joint Optimization for Multi-Slot Guaranteed Display Advertising Quantitative coronary calcification analysis for prediction of myocardial ischemia using non-contrast CT calcium scoring AgForce Enables Antigen-conditioned Generative Antibody Design DualOptim+: Bridging Shared and Decoupled Optimizer States for Better Machine Unlearning in Large Language Models Machine learning prediction of obstructive coronary artery disease using opportunistic coronary calcium and epicardial fat assessments from CT calcium scoring scans Teaching Language Models to Forecast Research Success Through Comparative Idea Evaluation HealthCraft: A Reinforcement Learning Safety Environment for Emergency Medicine X-Token: Projection-Guided Cross-Tokenizer Knowledge Distillation EntmaxKV: Support-Aware Decoding for Entmax Attention From Parameters to Data: A Task-Parameter-Guided Fine-Tuning Pipeline for Efficient LLM Alignment Amplifying, Not Learning: Fine-Tuned AI Text Detectors Amplify a Pretrained Direction Value-Gradient Hypothesis of RL for LLMs Hierarchical Variational Policies for Reward-Guided Diffusion Why Semantic Entropy Fails: Geometry-Aware and Calibrated Uncertainty for Policy Optimization Don't Collapse Your Features: Why CenterLoss Hurts OOD Detection and Multi-Scale Mahalanobis Wins Memory-Efficient Partitioned DNN Inference on Resource-Constrained Android Crowds OpenSeisML: Open Large-Scale Real Seismic and well-log Dataset for Generative AI ReversedQ: Opportunities for Faster Q-Learning in Episodic Online Reinforcement Learning SMA-DP: Spectral Memory-Aware Differential Privacy for Deep Learning PACD-Net: Pseudo-Augmented Contrastive Distillation for Glycemic Control Estimation from SMBG ZEBRA: Zero-shot Budgeted Resource Allocation for LLM Orchestration Mechanistic Interpretability for Learning Assurance of a Vision-Based Landing System Compositional Transduction with Latent Analogies for Offline Goal-Conditioned Reinforcement Learning LT2: Linear-Time Looped Transformers LLM Pretraining Shapes a Generalizable Manifold: Insights into Cross-Modal Transfer to Time Series Quadratic Characterizations for Reachability Analysis of Neural Networks The Devil is in the Condition Numbers: Why is GLU Better than non-GLU Structure? Learning to Think in Physics: Breaking Shortcut Learning in Scientific Diffusion via Representation Alignment The Hidden Signal of Verifier Strictness: Controlling and Improving Step-Wise Verification via Selective Latent Steering Distribution-Aware Reward: Reinforcement Learning over Predictive Distributions for LLM Regression A 10,000-Year Global Stochastic Tropical Cyclone Catalog with Wind-Dependent Track Transitions (WHITS) Modular Multimodal Classification Without Fine-Tuning: A Simple Compositional Approach TriForces: Augmenting Atomistic GNNs for Transferable Representations Tippett-minimum Fusion of Representation-space Diffusion Models for Multi-Encoder Out-of-Distribution Detection Unsupervised clustering and classification of upper limb EMG signals during functional movements: a data-driven REFLECTOR: Internalizing Step-wise Reflection against Indirect Jailbreak The General Theory of Localization Methods Deep Learning Surrogates for Emulating Stochastic Climate Tipping Dynamics Robust Recommendation from Noisy Implicit Feedback: A GMM-Weighted Bayes-label Transition Matrix Framework Decision-Path Patterns as Tree Reliability Signals: Path-based Adaptive Weighting for Random Forest Classification AGPO: Adaptive Group Policy Optimization with Dual Statistical Feedback ShapeBench: A Scalable Benchmark and Diagnostic Suite for Standardized Evaluation in Aerodynamic Shape Optimization Weight Decay Regimes in Grokking Transformers: Cheap Online Diagnostics Correcting Stochastic Update Bias in Preconditioned Language Model Optimizers Reinforcing Human Behavior Simulation via Verbal Feedback Miller-Index-Based Latent Crystallographic Fracture Plane Reasoning with Vision-Language Models Causal Machine Learning Is Not a Panacea: A Roadmap for Observational Causal Inference in Health Fast Reconstruction of Exact Maxwell Dynamics from Sparse Data Axiomatizing Neural Networks via Pursuit of Subspaces Training Language Agents to Learn from Experience Cumulative Meta-Learning from Active Learning Queries for Robustness to Spurious Correlations Ada2MS: A Hybrid Optimization Algorithm Based on Exponential Mixing of Elementwise and Global Second-Moment Estimates Dynamic Shapley Computation Same Target, Different Basins: Hard vs. Soft Labels for Annotator Distributions Design for Manufacturing: A Manufacturability Knowledge-Integrated Reinforcement Learning Framework for Free-Form Pipe Routing in Aeroengines Complementing reinforcement learning with SFT through logit averaging in the post training of LLMs Distributed Direct Preference Optimization Can Conversational XAI Improve User Performance? An Experimental Study Dynamic TMoE: A Drift-Aware Dynamic Mixture of Experts Framework for Non-Stationary Time Series Forecasting AVSD: Adaptive-View Self-Distillation by Balancing Consensus and Teacher-Specific Privileged Signals Hack-Verifiable Environments: Towards Evaluating Reward Hacking at Scale SURF: Steering the Scalarization Weight to Uniformly Traverse the Pareto Front Matryoshka Concept Bottleneck Models
Provable Robustness against Backdoor Attacks via the Primal-Dual Perspective on Differential Privacy
Aman Saxena, · 2026-05-23 · via cs.LG updates on arXiv.org

View PDF HTML (experimental)

Abstract:Randomized smoothing is a powerful tool for certifying robustness to adversarial perturbations, including poisoning attacks via randomized training and evasion attacks via randomized inference. Extending these guarantees to backdoor attacks, where training and test data are jointly perturbed, remains challenging because training- and test-time randomized mechanisms must be analyzed within a single robustness certificate. We address this by connecting randomized smoothing to the dual view of differential privacy through privacy profiles, which provide a numerical procedure for composing heterogeneous mechanisms. The resulting framework enables tight, modular, end-to-end certification of complex, composed mechanisms while leveraging existing analyses of differentially private mechanisms. We instantiate the framework for DP-SGD and Deep Partition Aggregation with inference-time smoothing, deriving joint robustness guarantees against both training-time and inference-time attacks. Experiments on MNIST and CIFAR-10 demonstrate the effectiveness of our framework. Overall, we provide a principled and general framework for using composite mechanisms to certify robustness under complex threat models that better capture the capabilities of real-world adversaries.
Subjects: Machine Learning (cs.LG); Cryptography and Security (cs.CR)
Cite as: arXiv:2605.21780 [cs.LG]
  (or arXiv:2605.21780v1 [cs.LG] for this version)
  https://doi.org/10.48550/arXiv.2605.21780

arXiv-issued DOI via DataCite (pending registration)

Submission history

From: Aman Saxena [view email]
[v1] Wed, 20 May 2026 22:17:29 UTC (736 KB)