Provable Adversarial Robustness for Group Equivariant Tasks: Graphs, Point Clouds, Molecules, and More
–Neural Information Processing Systems
A machine learning model is traditionally considered robust if its prediction remains (almost) constant under input perturbations with small norm. However, real-world tasks like molecular property prediction or point cloud segmentation have inherent equivariances, such as rotation or permutation equivariance. In such tasks, even perturbations with large norm do not necessarily change an input's semantic content. Furthermore, there are perturbations for which a model's prediction explicitly needs to change. For the first time, we propose a sound notion of adversarial robustness that accounts for task equivariance.
Neural Information Processing Systems
Apr-24-2026, 04:43:57 GMT
- Genre:
- Research Report > New Finding (0.67)
- Industry:
- Information Technology (0.68)
- Energy (0.46)
- Materials > Chemicals
- Commodity Chemicals > Petrochemicals (0.46)
- Technology:
- Information Technology
- Data Science (1.00)
- Artificial Intelligence
- Vision (1.00)
- Representation & Reasoning (1.00)
- Machine Learning
- Statistical Learning (1.00)
- Neural Networks (1.00)
- Information Technology