{"id":"https://openalex.org/W4200629748","doi":"https://doi.org/10.1109/tsp.2022.3198169","title":"Generalized Likelihood Ratio Test for Adversarially Robust Hypothesis Testing","display_name":"Generalized Likelihood Ratio Test for Adversarially Robust Hypothesis Testing","publication_year":2022,"publication_date":"2022-01-01","ids":{"openalex":"https://openalex.org/W4200629748","doi":"https://doi.org/10.1109/tsp.2022.3198169"},"language":"en","primary_location":{"id":"doi:10.1109/tsp.2022.3198169","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tsp.2022.3198169","pdf_url":null,"source":{"id":"https://openalex.org/S168680287","display_name":"IEEE Transactions on Signal Processing","issn_l":"1053-587X","issn":["1053-587X","1941-0476"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Signal Processing","raw_type":"journal-article"},"type":"preprint","indexed_in":["crossref","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.48550/arxiv.2112.02209","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5063721204","display_name":"Bhagyashree Puranik","orcid":"https://orcid.org/0000-0003-1083-137X"},"institutions":[{"id":"https://openalex.org/I154570441","display_name":"University of California, Santa Barbara","ror":"https://ror.org/02t274463","country_code":"US","type":"education","lineage":["https://openalex.org/I154570441"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Bhagyashree Puranik","raw_affiliation_strings":["Department of Electrical and Computer Engineering, University of California Santa Barbara, Santa Barbara, CA, USA"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, University of California Santa Barbara, Santa Barbara, CA, USA","institution_ids":["https://openalex.org/I154570441"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5046401755","display_name":"Upamanyu Madhow","orcid":null},"institutions":[{"id":"https://openalex.org/I154570441","display_name":"University of California, Santa Barbara","ror":"https://ror.org/02t274463","country_code":"US","type":"education","lineage":["https://openalex.org/I154570441"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Upamanyu Madhow","raw_affiliation_strings":["Department of Electrical and Computer Engineering, University of California Santa Barbara, Santa Barbara, CA, USA"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, University of California Santa Barbara, Santa Barbara, CA, USA","institution_ids":["https://openalex.org/I154570441"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5040270189","display_name":"Ramtin Pedarsani","orcid":"https://orcid.org/0000-0002-1126-0292"},"institutions":[{"id":"https://openalex.org/I154570441","display_name":"University of California, Santa Barbara","ror":"https://ror.org/02t274463","country_code":"US","type":"education","lineage":["https://openalex.org/I154570441"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Ramtin Pedarsani","raw_affiliation_strings":["Department of Electrical and Computer Engineering, University of California Santa Barbara, Santa Barbara, CA, USA"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, University of California Santa Barbara, Santa Barbara, CA, USA","institution_ids":["https://openalex.org/I154570441"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5063721204"],"corresponding_institution_ids":["https://openalex.org/I154570441"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.00645814,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"70","issue":null,"first_page":"4124","last_page":"4139"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9983999729156494,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9983999729156494,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/minimax","display_name":"Minimax","score":0.7413362264633179},{"id":"https://openalex.org/keywords/likelihood-ratio-test","display_name":"Likelihood-ratio test","score":0.6063495874404907},{"id":"https://openalex.org/keywords/heuristics","display_name":"Heuristics","score":0.5906710624694824},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.540448784828186},{"id":"https://openalex.org/keywords/statistical-hypothesis-testing","display_name":"Statistical hypothesis testing","score":0.5336818099021912},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.4813828766345978},{"id":"https://openalex.org/keywords/bounded-function","display_name":"Bounded function","score":0.4767240583896637},{"id":"https://openalex.org/keywords/mathematical-optimization","display_name":"Mathematical optimization","score":0.45639628171920776},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.403829962015152},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.22330129146575928},{"id":"https://openalex.org/keywords/statistics","display_name":"Statistics","score":0.17950132489204407}],"concepts":[{"id":"https://openalex.org/C149728462","wikidata":"https://www.wikidata.org/wiki/Q751319","display_name":"Minimax","level":2,"score":0.7413362264633179},{"id":"https://openalex.org/C9483764","wikidata":"https://www.wikidata.org/wiki/Q585740","display_name":"Likelihood-ratio test","level":2,"score":0.6063495874404907},{"id":"https://openalex.org/C127705205","wikidata":"https://www.wikidata.org/wiki/Q5748245","display_name":"Heuristics","level":2,"score":0.5906710624694824},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.540448784828186},{"id":"https://openalex.org/C87007009","wikidata":"https://www.wikidata.org/wiki/Q210832","display_name":"Statistical hypothesis testing","level":2,"score":0.5336818099021912},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.4813828766345978},{"id":"https://openalex.org/C34388435","wikidata":"https://www.wikidata.org/wiki/Q2267362","display_name":"Bounded function","level":2,"score":0.4767240583896637},{"id":"https://openalex.org/C126255220","wikidata":"https://www.wikidata.org/wiki/Q141495","display_name":"Mathematical optimization","level":1,"score":0.45639628171920776},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.403829962015152},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.22330129146575928},{"id":"https://openalex.org/C105795698","wikidata":"https://www.wikidata.org/wiki/Q12483","display_name":"Statistics","level":1,"score":0.17950132489204407},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tsp.2022.3198169","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tsp.2022.3198169","pdf_url":null,"source":{"id":"https://openalex.org/S168680287","display_name":"IEEE Transactions on Signal Processing","issn_l":"1053-587X","issn":["1053-587X","1941-0476"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Signal Processing","raw_type":"journal-article"},{"id":"doi:10.48550/arxiv.2112.02209","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2112.02209","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article-journal"}],"best_oa_location":{"id":"doi:10.48550/arxiv.2112.02209","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2112.02209","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article-journal"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions","score":0.4699999988079071}],"awards":[{"id":"https://openalex.org/G1078969577","display_name":null,"funder_award_id":"CIF-2224263","funder_id":"https://openalex.org/F4320335353","funder_display_name":"National Science Foundation of Sri Lanka"},{"id":"https://openalex.org/G5054891773","display_name":null,"funder_award_id":"CIF-1909320","funder_id":"https://openalex.org/F4320335353","funder_display_name":"National Science Foundation of Sri Lanka"},{"id":"https://openalex.org/G7186071932","display_name":null,"funder_award_id":"W911NF-19-1-0053","funder_id":"https://openalex.org/F4320338281","funder_display_name":"Army Research Office"}],"funders":[{"id":"https://openalex.org/F4320335353","display_name":"National Science Foundation of Sri Lanka","ror":"https://ror.org/010xaa060"},{"id":"https://openalex.org/F4320338281","display_name":"Army Research Office","ror":"https://ror.org/05epdh915"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":35,"referenced_works":["https://openalex.org/W1973738368","https://openalex.org/W2014002306","https://openalex.org/W2125908420","https://openalex.org/W2130118845","https://openalex.org/W2163599171","https://openalex.org/W2963274426","https://openalex.org/W2963542245","https://openalex.org/W2963794455","https://openalex.org/W2963857521","https://openalex.org/W2968611582","https://openalex.org/W3007305010","https://openalex.org/W3007968297","https://openalex.org/W3015213852","https://openalex.org/W3015651399","https://openalex.org/W3035656068","https://openalex.org/W3113786991","https://openalex.org/W3132712038","https://openalex.org/W3161256310","https://openalex.org/W3185055925","https://openalex.org/W4220793518","https://openalex.org/W4247200422","https://openalex.org/W4293846201","https://openalex.org/W6637162671","https://openalex.org/W6640425456","https://openalex.org/W6722479552","https://openalex.org/W6738369334","https://openalex.org/W6748277150","https://openalex.org/W6748475379","https://openalex.org/W6751762734","https://openalex.org/W6752034395","https://openalex.org/W6754646375","https://openalex.org/W6759129252","https://openalex.org/W6762707182","https://openalex.org/W6765694979","https://openalex.org/W6767692553"],"related_works":["https://openalex.org/W2029535655","https://openalex.org/W2022267464","https://openalex.org/W2411300183","https://openalex.org/W2905979050","https://openalex.org/W2142613554","https://openalex.org/W2155860514","https://openalex.org/W2006448816","https://openalex.org/W1993193300","https://openalex.org/W4200629748","https://openalex.org/W2342916812"],"abstract_inverted_index":{"Machine":[0],"learning":[1],"models":[2],"are":[3,232],"known":[4,117],"to":[5,8,34,66,89,220,227,234],"be":[6],"susceptible":[7],"adversarial":[9,42,47,81,112,214],"attacks,":[10,224],"which":[11,115,199],"can":[12],"cause":[13],"misclassification":[14],"by":[15,216,266],"introducing":[16],"small":[17],"but":[18],"well":[19],"designed":[20],"perturbations.":[21,43],"In":[22],"this":[23],"paper,":[24],"we":[25,94,159],"consider":[26],"a":[27,50,55,116,126,179,193,200,218],"classical":[28],"hypothesis":[29,70,92,100,195],"testing":[30,71,101,196],"problem":[31],"in":[32,102,236,251],"order":[33],"develop":[35],"fundamental":[36],"insight":[37],"into":[38],"defending":[39],"against":[40],"such":[41],"We":[44,128,186,241,255],"interpret":[45],"an":[46],"perturbation":[48],"as":[49],"nuisance":[51],"parameter,":[52],"and":[53,79,137,212,225,270],"propose":[54],"defense":[56,119,166,250,262],"based":[57],"on":[58],"applying":[59],"the":[60,67,75,80,84,122,130,134,144,147,153,164,170,174,189,237,245,248,258],"generalized":[61],"likelihood":[62],"ratio":[63],"test":[64],"(GLRT)":[65],"resulting":[68],"composite":[69],"problem,":[72,197],"jointly":[73],"estimating":[74],"class":[76],"of":[77,146,152,247,260],"interest":[78],"perturbation.":[82],"While":[83],"GLRT":[85,135,165,190,249,261],"approach":[86,172,191],"is":[87,167,203],"applicable":[88],"general":[90],"multi-class":[91,194],"testing,":[93],"first":[95],"evaluate":[96],"it":[97],"for":[98,114,121,133,192,198],"binary":[99],"white":[103],"Gaussian":[104,253,264],"noise":[105,269],"under":[106,173,183,209],"<inline-formula><tex-math":[107],"notation=\"LaTeX\">$\\ell":[108],"_{\\infty":[109],"}$</tex-math></inline-formula>":[110],"norm-bounded":[111],"perturbations,":[113],"minimax":[118,154,171,201],"optimizing":[120],"worst-case":[123,131,175],"attack":[124,132],"provides":[125],"benchmark.":[127],"derive":[129],"defense,":[136],"show":[138,160,242],"that":[139,151,163,231],"its":[140,207],"asymptotic":[141],"performance":[142,208],"(as":[143],"dimension":[145],"data":[148],"increases)":[149],"approaches":[150],"defense.":[155],"For":[156],"non-asymptotic":[157],"regimes,":[158],"via":[161],"simulations":[162],"competitive":[168],"with":[169],"attack,":[176],"while":[177],"yielding":[178],"better":[180],"robustness-accuracy":[181],"trade-off":[182],"weaker":[184],"attacks.":[185],"also":[187,256],"illustrate":[188],"strategy":[202],"not":[204],"known,":[205],"evaluating":[206],"both":[210],"noise-agnostic":[211,229],"noise-aware":[213,223],"settings,":[215],"providing":[217],"method":[219],"find":[221,228],"optimal":[222,235],"ideas":[226],"attacks":[230],"close":[233],"high":[238],"SNR":[239],"regime.":[240],"through":[243],"experiments":[244],"application":[246],"colored":[252],"noise.":[254],"demonstrate":[257],"use":[259],"beyond":[263],"settings":[265],"considering":[267],"Laplacian":[268],"illustrating":[271],"how":[272],"our":[273],"rule":[274],"simplifies.":[275]},"counts_by_year":[],"updated_date":"2026-04-09T08:11:56.329763","created_date":"2021-12-31T00:00:00"}
