Geometric Algorithms for -NN Poisoning
- FedML

Abstract
We propose a label poisoning attack on geometric data sets against -nearest neighbor classification. We provide an algorithm that can compute an -additive approximation of the optimal poisoning in time for a given data set , where . Our algorithm achieves its objectives through the application of multi-scale random partitions.
View on arXivComments on this paper