{"id":"https://openalex.org/W3033623677","doi":"https://doi.org/10.1145/3385412.3385975","title":"Proving data-poisoning robustness in decision trees","display_name":"Proving data-poisoning robustness in decision trees","publication_year":2020,"publication_date":"2020-06-07","ids":{"openalex":"https://openalex.org/W3033623677","doi":"https://doi.org/10.1145/3385412.3385975","mag":"3033623677"},"language":"en","primary_location":{"id":"doi:10.1145/3385412.3385975","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3385412.3385975","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 41st ACM SIGPLAN Conference on Programming Language Design and Implementation","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5026703503","display_name":"Samuel Drews","orcid":null},"institutions":[{"id":"https://openalex.org/I135310074","display_name":"University of Wisconsin\u2013Madison","ror":"https://ror.org/01y2jtd41","country_code":"US","type":"education","lineage":["https://openalex.org/I135310074"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Samuel Drews","raw_affiliation_strings":["University of Wisconsin-Madison, USA"],"affiliations":[{"raw_affiliation_string":"University of Wisconsin-Madison, USA","institution_ids":["https://openalex.org/I135310074"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5050593520","display_name":"Aws Albarghouthi","orcid":"https://orcid.org/0000-0003-4577-175X"},"institutions":[{"id":"https://openalex.org/I135310074","display_name":"University of Wisconsin\u2013Madison","ror":"https://ror.org/01y2jtd41","country_code":"US","type":"education","lineage":["https://openalex.org/I135310074"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Aws Albarghouthi","raw_affiliation_strings":["University of Wisconsin-Madison, USA"],"affiliations":[{"raw_affiliation_string":"University of Wisconsin-Madison, USA","institution_ids":["https://openalex.org/I135310074"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5089920000","display_name":"Loris D\u2019Antoni","orcid":"https://orcid.org/0000-0001-9625-4037"},"institutions":[{"id":"https://openalex.org/I135310074","display_name":"University of Wisconsin\u2013Madison","ror":"https://ror.org/01y2jtd41","country_code":"US","type":"education","lineage":["https://openalex.org/I135310074"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Loris D'Antoni","raw_affiliation_strings":["University of Wisconsin-Madison, USA"],"affiliations":[{"raw_affiliation_string":"University of Wisconsin-Madison, USA","institution_ids":["https://openalex.org/I135310074"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5026703503"],"corresponding_institution_ids":["https://openalex.org/I135310074"],"apc_list":null,"apc_paid":null,"fwci":1.5907,"has_fulltext":false,"cited_by_count":19,"citation_normalized_percentile":{"value":0.86704918,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"1083","last_page":"1097"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9923999905586243,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12026","display_name":"Explainable Artificial Intelligence (XAI)","score":0.9918000102043152,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/soundness","display_name":"Soundness","score":0.7692297697067261},{"id":"https://openalex.org/keywords/decision-tree","display_name":"Decision tree","score":0.7577549815177917},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.7491542100906372},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7220479846000671},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.6548110842704773},{"id":"https://openalex.org/keywords/antidote","display_name":"Antidote","score":0.6203994750976562},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5834022164344788},{"id":"https://openalex.org/keywords/mathematical-proof","display_name":"Mathematical proof","score":0.5048726201057434},{"id":"https://openalex.org/keywords/training-set","display_name":"Training set","score":0.4983656406402588},{"id":"https://openalex.org/keywords/decision-tree-learning","display_name":"Decision tree learning","score":0.4810898005962372},{"id":"https://openalex.org/keywords/set","display_name":"Set (abstract data type)","score":0.4635894000530243},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.09024977684020996}],"concepts":[{"id":"https://openalex.org/C39920170","wikidata":"https://www.wikidata.org/wiki/Q693083","display_name":"Soundness","level":2,"score":0.7692297697067261},{"id":"https://openalex.org/C84525736","wikidata":"https://www.wikidata.org/wiki/Q831366","display_name":"Decision tree","level":2,"score":0.7577549815177917},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.7491542100906372},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7220479846000671},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.6548110842704773},{"id":"https://openalex.org/C2779365888","wikidata":"https://www.wikidata.org/wiki/Q194168","display_name":"Antidote","level":3,"score":0.6203994750976562},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5834022164344788},{"id":"https://openalex.org/C108710211","wikidata":"https://www.wikidata.org/wiki/Q11538","display_name":"Mathematical proof","level":2,"score":0.5048726201057434},{"id":"https://openalex.org/C51632099","wikidata":"https://www.wikidata.org/wiki/Q3985153","display_name":"Training set","level":2,"score":0.4983656406402588},{"id":"https://openalex.org/C5481197","wikidata":"https://www.wikidata.org/wiki/Q16766476","display_name":"Decision tree learning","level":3,"score":0.4810898005962372},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.4635894000530243},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.09024977684020996},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C29730261","wikidata":"https://www.wikidata.org/wiki/Q274160","display_name":"Toxicity","level":2,"score":0.0},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C178790620","wikidata":"https://www.wikidata.org/wiki/Q11351","display_name":"Organic chemistry","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3385412.3385975","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3385412.3385975","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 41st ACM SIGPLAN Conference on Programming Language Design and Implementation","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.7599999904632568,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":22,"referenced_works":["https://openalex.org/W1483994939","https://openalex.org/W1548720576","https://openalex.org/W1973400823","https://openalex.org/W2003275871","https://openalex.org/W2043100293","https://openalex.org/W2107397716","https://openalex.org/W2128420091","https://openalex.org/W2145949183","https://openalex.org/W2295598076","https://openalex.org/W2560674852","https://openalex.org/W2594877703","https://openalex.org/W2794609696","https://openalex.org/W2900153411","https://openalex.org/W2936674544","https://openalex.org/W2942689850","https://openalex.org/W2963857521","https://openalex.org/W2997425368","https://openalex.org/W3102476541","https://openalex.org/W3105155462","https://openalex.org/W3120740533","https://openalex.org/W3121299688","https://openalex.org/W4297957988"],"related_works":["https://openalex.org/W2591672004","https://openalex.org/W1982169401","https://openalex.org/W2356463514","https://openalex.org/W4319437832","https://openalex.org/W4243803609","https://openalex.org/W2030894524","https://openalex.org/W2350430350","https://openalex.org/W2592385415","https://openalex.org/W102063058","https://openalex.org/W2006686080"],"abstract_inverted_index":{"Machine":[0],"learning":[1,61,67],"models":[2,62],"are":[3],"brittle,":[4],"and":[5,56,79],"small":[6],"changes":[7],"in":[8,14,82],"the":[9,19,42,47,103,117,125,135],"training":[10,43,126],"data":[11,29],"can":[12,34,109],"result":[13],"different":[15],"predictions.":[16],"We":[17,50,69,133],"study":[18],"problem":[20],"of":[21,38,59,97,105,137,142],"proving":[22],"that":[23,63],"a":[24,36,54,71,83,114,140],"prediction":[25,119],"is":[26],"robust":[27],"to":[28,45,102],"poisoning,":[30],"where":[31],"an":[32,93],"attacker":[33],"inject":[35],"number":[37,141],"malicious":[39],"elements":[40],"into":[41],"set":[44,127],"influence":[46],"learned":[48],"model.":[49],"target":[51],"decision-tree":[52],"models,":[53],"popular":[55,143],"simple":[57],"class":[58],"machine":[60],"underlies":[64],"many":[65],"complex":[66],"techniques.":[68],"present":[70],"sound":[72],"verification":[73],"technique":[74],"based":[75],"on":[76,139],"abstract":[77],"interpretation":[78],"implement":[80],"it":[81],"tool":[84],"called":[85],"Antidote.":[86],"Antidote":[87,108,138],"abstractly":[88],"trains":[89],"decision":[90],"trees":[91],"for":[92,113],"intractably":[94],"large":[95],"space":[96],"possible":[98],"poisoned":[99],"datasets.":[100,144],"Due":[101],"soundness":[104],"our":[106],"abstraction,":[107],"produce":[110],"proofs":[111],"that,":[112],"given":[115],"input,":[116],"corresponding":[118],"would":[120],"not":[121],"have":[122],"changed":[123],"had":[124],"been":[128],"tampered":[129],"with":[130],"or":[131],"not.":[132],"demonstrate":[134],"effectiveness":[136]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":3},{"year":2023,"cited_by_count":7},{"year":2022,"cited_by_count":2},{"year":2021,"cited_by_count":1},{"year":2020,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
