arXiv Machine Learning By Hanbing Liang, Fujun Liu

Wrong-Physics Backdoors in Neural PDE Operators

Read the original on arXiv Machine Learning →

The paper introduces a new type of data‑poisoning attack called a wrong‑physics backdoor, which tricks neural PDE operators into selecting a solution from the same PDE family but with an incorrect physical parameter. By relinking a surrogate input’s supervision to a cached alternate‑parameter solution, the attack keeps the output physically plausible yet wrong for the intended parameter. Experiments on 476 campaigns across several PDEs and models (FNO, DeepONet, Transformer, GRU, LSTM) show high success rates while maintaining low clean error, revealing a validation gap in current practices.

Machine-generated by The Flow from the publisher's headline and feed description — not written or checked by a human. The full article lives at arXiv Machine Learning.

arXiv AI
Jun 26

Error-Conditioned Neural Solvers

arXiv:2606. 27354v1 Announce Type: cross Abstract: Neural surrogate models offer fast approximate mappings from PDE parameters to solutions, but they typically treat solving as a purely statistical task: once trained, they struggle to correct their own constraint violations and extrapolate beyond the training distribution.

By Haina Jiang, Liam Wang, Peng-Chen Chen, Min Seop Kwak, Seungryong Kim, Brian Bell, Jeong Joon Park