English

Stealthy Poisoning Attacks Bypass Defenses in Regression Settings

Machine Learning 2026-03-03 v2 Artificial Intelligence Cryptography and Security

Abstract

Regression models are widely used in industrial processes, engineering, and in natural and physical sciences, yet their robustness to poisoning has received less attention. When it has, studies often assume unrealistic threat models and are thus less useful in practice. In this paper, we propose a novel optimal stealthy attack formulation that considers different degrees of detectability and show that it bypasses state-of-the-art defenses. We further propose a new methodology based on normalization of objectives to evaluate different trade-offs between effectiveness and detectability. Finally, we develop a novel defense (BayesClean) against stealthy attacks. BayesClean improves on previous defenses when attacks are stealthy and the number of poisoning points is significant.

Keywords

Cite

@article{arxiv.2601.22308,
  title  = {Stealthy Poisoning Attacks Bypass Defenses in Regression Settings},
  author = {Javier Carnerero-Cano and Luis Muñoz-González and Phillippa Spencer and Emil C. Lupu},
  journal= {arXiv preprint arXiv:2601.22308},
  year   = {2026}
}
R2 v1 2026-07-01T09:26:41.340Z