Pith. sign in

REVIEW 1 cited by

Sensitivity Curve Maximization: Attacking Robust Aggregators in Distributed Learning

Not yet reviewed by Pith; the record is open.

This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.

SPECIMEN: schema-true, not a live event

T0 review · schema-true

One-sentence machine reading of the paper's core claim.

pith:XXXXXXXX · record.json · timestamp

arxiv 2412.17740 v1 pith:UQIZ2Z6S submitted 2024-12-23 cs.LG eess.SP

classification cs.LGeess.SP
keywords robustlearningaggregationschemesagentsaggregatorsattackbreakdown
verification ladder T0 review T1 audit T2 compute T3 formal
0 comments
read the original abstract

In distributed learning agents aim at collaboratively solving a global learning problem. It becomes more and more likely that individual agents are malicious or faulty with an increasing size of the network. This leads to a degeneration or complete breakdown of the learning process. Classical aggregation schemes are prone to breakdown at small contamination rates, therefore robust aggregation schemes are sought for. While robust aggregation schemes can generally tolerate larger contamination rates, many have been shown to be susceptible to carefully crafted malicious attacks. In this work, we show how the sensitivity curve (SC), a classical tool from robust statistics, can be used to systematically derive optimal attack patterns against arbitrary robust aggregators, in most cases rendering them ineffective. We show the effectiveness of the proposed attack in multiple simulations.

Discussion (0). Sign in to comment.

Forward citations

Cited by 1 Pith paper

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score. Full citation record

  1. Generalization Error Analysis for Attack-Free and Byzantine-Resilient Decentralized Learning with Data Heterogeneity

    cs.LG 2025-06 conditional novelty 6.0 of 10

    Decentralized SGD generalization error is bounded by O(init/(µNZ)) plus noise and heterogeneity terms, with a Byzantine-attack term that persists as sample size grows.

Pith tools