An Optimal Control View of Adversarial Machine Learning

Xiaojin Zhu
DOI: https://doi.org/10.48550/arXiv.1811.04422
IF: 5.414
2018-11-11
Machine Learning
Abstract:I describe an optimal control view of adversarial machine learning, where the dynamical system is the machine learner, the input are adversarial actions, and the control costs are defined by the adversary's goals to do harm and be hard to detect. This view encompasses many types of adversarial machine learning, including test-item attacks, training-data poisoning, and adversarial reward shaping. The view encourages adversarial machine learning researcher to utilize advances in control theory and reinforcement learning.
What problem does this paper attempt to address?