English

Adversarial Machine Learning Attacks on Financial Reporting via Maximum Violated Multi-Objective Attack

Machine Learning 2025-07-09 v1 Machine Learning

Abstract

Bad actors, primarily distressed firms, have the incentive and desire to manipulate their financial reports to hide their distress and derive personal gains. As attackers, these firms are motivated by potentially millions of dollars and the availability of many publicly disclosed and used financial modeling frameworks. Existing attack methods do not work on this data due to anti-correlated objectives that must both be satisfied for the attacker to succeed. We introduce Maximum Violated Multi-Objective (MVMO) attacks that adapt the attacker's search direction to find 20×20\times more satisfying attacks compared to standard attacks. The result is that in 50%\approx50\% of cases, a company could inflate their earnings by 100-200%, while simultaneously reducing their fraud scores by 15%. By working with lawyers and professional accountants, we ensure our threat model is realistic to how such frauds are performed in practice.

Keywords

Cite

@article{arxiv.2507.05441,
  title  = {Adversarial Machine Learning Attacks on Financial Reporting via Maximum Violated Multi-Objective Attack},
  author = {Edward Raff and Karen Kukla and Michel Benaroch and Joseph Comprix},
  journal= {arXiv preprint arXiv:2507.05441},
  year   = {2025}
}

Comments

KDD Workshop on Machine Learning in Finance

R2 v1 2026-07-01T03:50:20.931Z