Maximal extractable value in CFMMs can degrade or improve routing quality, with reordering MEV showing logarithmic impact.
problem Maximal extractable value in constant function market makers (CFMMs) and its impact on routing quality.
method Game theoretic analysis of MEV in CFMMs, constructing price of anarchy and analyzing reordering MEV.
result Conditions under which reordering MEV shows logarithmic impact, and implications for MEV searchers and CFMM designers.
Ethereum block builders can earn up to $14M/month by reordering transactions, harming users.
problem Block builders can exploit transaction reordering to earn significant profits, harming users.
method Estimation of MEV payments and analysis of reordering effects.
result Block builders can earn up to $14M/month by reordering transactions, skewing the distribution.
Study reveals risks of investing in new crypto-tokens in decentralized exchanges.
problem Risks associated with investing in newly created tokens in decentralized exchanges.
method Analysis of financial impact, market dynamics, profitability, and liquidity manipulations.
result Significant market liquidity trapped in honeypots, reducing market efficiency and misleading investors.
This paper optimizes liquidation strategies in DeFi protocols to prevent MEV attacks.
problem Predatory price manipulations and Maximal Extractable Value (MEV) attacks in DeFi protocols.
method Dynamic program modeling, Constant Product Market Maker (CPMM) transaction fees analysis.
result CPMM transaction fees make liquidation manipulations unprofitable for attackers.
Study finds average 2.02 bps loss in automated market maker routing.
problem Measuring sub-optimality in automated market maker routing.
method Three reproducible optimal benchmarks: SCO, FVO, G-FVO; bisection-based algorithm for optimal routing.
result Average 2.02 bps loss per trade, \$24 million total loss.
New financial model with sandwiched volatility for option pricing.
problem Developing a new financial model for option pricing.
method Introducing a new model with stochastic volatility driven by a Gaussian Volterra process, ensuring the solution is sandwiched between two arbitrary Hölder continuous functions.
result Developed an algorithm for pricing options with discontinuous payoffs using Malliavin calculus.
Study symplectic fillings of sandwiched singularities.
problem Contrast deformation theory and symplectic topology of Milnor fibers.
method Develop an analog of de Jong--van Straten's theory in the symplectic setting using spinal open books and nearly Lefschetz fibrations.
result Minimal symplectic fillings of links are generated by certain immersed disk arrangements.
We apply Gromov's ham sandwich method to get (1) domain monotonicity (up to a multiplicative constant factor); (2) reverse domain monotonicity (up to a multiplicative constant factor); and (3) universal inequalities for Neumann eigenvalues of the Laplacian on bounded convex domains in a Euclidean space.
Invariant measures found for contact Hamiltonian systems split into Reeb and Liouville dynamics.
problem Finding invariant measures for contact Hamiltonian systems.
method Splitting the system into Reeb and Liouville dynamics; using invariant measures and symplectic sandwiches.
result Invariant measure found for Reeb dynamics; characterization of Liouville dynamics invariant measure.
The main goal of the paper is to prove the sandwich theorem for geodesic convex functions in a complete Riemannian manifold. Then by using this theorem we have proved an inequality in a manifold with bounded sectional curvature. Finally, we have shown that the gradient of a convex function is orthogonal to the tangent …
This paper develops a method to estimate the rate-distortion function for general data sources.
problem Estimating the rate-distortion function for general data sources.
method Develops an algorithm for sandwiching the R-D function of a general (not necessarily discrete) source using i.i.d. data samples.
result Estimates R-D sandwich bounds for various data sources, including natural images, indicating potential for improving compression methods.
In this paper we show the validity, under certain geometric conditions, of Wheeler's thin sandwich conjecture for higher dimensional theories of gravity. We extend the results shown by R. Bartnik and G. Fodor for the 3-dimensional case in two ways. On the one hand, we show that the results obtained by the mentioned aut…
Paper proves SVV model reproduces power-law skew in implied volatilities.
problem Reproducing power-law behavior in implied volatility skew.
method Analytical proof using Malliavin calculus and Volterra kernel selection.
result SVV model reproduces power-law skew under correct kernel choice.
A theorem divides hyperplanes evenly with a line through the origin.
problem Dividing hyperplanes evenly with a line.
method Direct proof using measures on hyperplanes.
result A line through the origin divides hyperplanes evenly.
The reduced thin-sandwich equations (RTSE) appear within Wheeler's thin-sandwich approach towards the Einstein constraint equations (ECE) of general relativity. It is known that these equations cannot be well-posed in general, but, on closed manifolds, sufficient conditions for well-posedness have been established. In …
In this paper, we propose new efficient algorithms to verify the null space condition in compressed sensing (CS). Given an (n−m)×n (m>0) CS matrix A and a positive k, we are interested in computing αk={z:Az=0,z=0}max{K:∣K∣≤k}max ∥zK∥1∥z∥1, where …
Study examines stylized facts in DEX markets vs. traditional exchanges.
problem Comparing stylized facts in decentralized exchanges (DEXs) vs. traditional markets.
method Empirical analysis of 24 most active Uniswap v3 pools.
result New statistical regularities in DEX markets, linked to market structure and activity.
Recent work has suggested enhancing Bloom filters by using a pre-filter, based on applying machine learning to determine a function that models the data set the Bloom filter is meant to represent. Here we model such learned Bloom filters,, with the following outcomes: (1) we clarify what guarantees can and cannot be as…
Polyak-Ruppert CLT for SA-Adam with momentum and non-convergent adaptive preconditioning
problem Adaptive optimizers combining momentum and non-convergent preconditioning
method Proving positive drift stability and a non-autonomous Polyak-Ruppert CLT for SA-Adam
result The iterate-marginal covariance is exactly the plain stochastic gradient descent (SGD) sandwich
Study on deformations of symmetric spaces using Jordan algebras.
problem Deformability of symmetric Einstein metrics on compact Lie algebras.
method Developed sandwich operators and quadratic Casimir operators for compact Lie algebras; calculated obstruction integrals from invariant polynomials; explored relation to simple Jordan algebras.
result Proved the nonlinear instability of most infinitesimally deformable irreducible compact symmetric spaces.
Equivalent formulations for low-rank matrix optimization are proven.
problem Low-rank matrix optimization with rank constraints.
method Established geometric landscape connections between manifold and factorization formulations.
result Equivalence between manifold and factorization formulations at FOSPs, SOSPs, and strict saddles.
Computing the marginal likelihood (ML) of a model requires marginalizing out all of the parameters and latent variables, a difficult high-dimensional summation or integration problem. To make matters worse, it is often hard to measure the accuracy of one's ML estimates. We present bidirectional Monte Carlo, a technique…
We show that the if a sequence of normalized polynomials gives rise to a positive basis of the skein algebra of a surface, then it is sandwiched between the two types of Chebyshev polynomials. For the closed torus, we show that the normalized sequence of Chebyshev polynomials of type one (T^n) is the only one w…
Researchers develop a method to infer reference measures from observed functionals.
problem Tackles the challenge of identifying or recovering a reference measure from observed functionals.
method Uses the property of law-invariant functionals defining lower or upper supporting sets in dual spaces of signed measures.
result Illustrates the methodology with examples and develops a modification for Value-at-Risk.
New framework improves option pricing models by addressing volatility dynamics.
problem Challenges in standard option pricing models, especially in deriving implied volatility.
method Developed a new framework called Implied Remaining Variance (IRV), identifying minimal conditions for absence of arbitrage.
result Reformulated results of Schweizer and Wissel (2008b) and independently derived El Amrani, Jacquier and Martini (2021) results within IRV framework.
Non-atomic arbitrage exploits price differences on Ethereum and other blockchains, accounting for over 10% of Ethereum's block value.
problem Price differences on decentralized exchanges and centralized exchanges lead to MEV.
method Analyzed non-atomic arbitrage on Ethereum's largest DEXes, identifying its prevalence and impact.
result More than 10% of Ethereum's block value is attributed to non-atomic arbitrage, involving over $132 billion.
The paper explores handlebody versions of various diagram algebras.
problem None explicitly stated, but related to algebraic structures.
method Study of handlebody versions of classical diagram algebras and reformulation of cellular algebras.
result All mentioned algebras are part of the reformulated cellular algebra theory.
Generative Adversarial Networks (GAN) can achieve promising performance on learning complex data distributions on different types of data. In this paper, we first show a straightforward extension of existing GAN algorithm is not applicable to point clouds, because the constraint required for discriminators is undefined…
For portfolio optimisation under proportional transaction costs, we provide a duality theory for general cadlag price processes. In this setting, we prove the existence of a dual optimiser as well as a shadow price process in a generalised sense. This shadow price is defined via a "sandwiched" process consisting of a p…
"Feint Attack", as a new type of APT attack, has become the focus of attention. It adopts a multi-stage attacks mode which can be concluded as a combination of virtual attacks and real attacks. Under the cover of virtual attacks, real attacks can achieve the real purpose of the attacker, as a result, it often caused hu…
This paper studies adversarial attacks on Gaussian process bandits.
problem Adversarial attacks on Gaussian process bandits to manipulate optimal function regions.
method Proposes various adversarial attack methods on GP bandits, including white-box and black-box attacks.
result Adversarial attacks can force GP bandits to optima in target regions even with low attack budgets.
Subpopulation attacks poison data to misclassify naturally distributed points.
problem Improving accuracy of machine learning predictions through adversarial data modification.
method Introducing a novel subpopulation attack framework, using influence functions and gradient optimization.
result Subpopulation attacks are effective and stealthy, making them difficult to defend against.
Reward-poisoning attacks can force RL agents to learn bad policies, and we categorize and quantify their feasibility.
problem Reward-poisoning attacks can manipulate RL agents to learn undesirable policies.
method Categorize attacks by infinity-norm constraint, provide thresholds for feasibility, and develop adaptive attack strategies.
result Adaptive reward-poisoning attacks can achieve the nefarious policy in polynomial steps, while non-adaptive attacks require exponential steps.
Spanning attack improves black-box attacks with unlabeled data.
problem Query inefficiency in black-box attacks due to high input space dimensionality.
method Proposes spanning attack by constraining adversarial perturbations in a low-dimensional subspace via an auxiliary unlabeled dataset.
result Significantly improves query efficiency of black-box attacks.
Headless attacks bypass classification heads to fool transfer learning models.
problem Adversarial attacks against transfer learning models without access to the classification head.
method Label-blind adversarial attacks that do not require class-label information.
result Transfer attack lowers ResNet18 accuracy on CIFAR10 by over 40%.
New attack manipulates UCB algorithm, new defense algorithm reduces pseudo-regret.
problem Adversarial attacks on stochastic bandit algorithms.
method Introducing action-manipulation attacks and proposing a robust defense algorithm.
result Proposed defense algorithm reduces pseudo-regret to O(max{log T, A}).
This paper explores evasion attacks against Bayesian models.
problem Bayesian predictive models are vulnerable to evasion attacks.
method Developed gradient-based attacks for specific point predictions and entire posterior distributions.
result Optimal evasion attacks can be designed against Bayesian models.
Adversarial attacks pose a threat to deep neural networks, especially in safety-critical applications.
problem Adversarial attacks can misclassify deep neural networks, leading to safety issues.
method Adversarial attacks are categorized into white-box and black-box attacks based on the attacker's knowledge. They can be targeted or non-targeted.
result Adversarial attacks are effective and can transfer between different models and real-world scenarios.
New approach deflects adversarial attacks by causing them to resemble target classes.
problem Ongoing cycle of stronger defenses being broken by more advanced attacks.
method Combines three detection mechanisms in Capsule Networks to achieve state-of-the-art performance on both standard and defense-aware attacks. Uses human study to show attacks can no longer be called adversarial.
result Attack images can no longer be called adversarial because they are classified the same way as humans do.
RayS attack improves hard-label adversarial attacks by reducing query complexity and identifying false robust models.
problem Challenges in hard-label adversarial attacks, especially in terms of effectiveness and efficiency.
method Reformulates continuous problem into discrete problem without gradient estimation and uses a fast check step to eliminate unnecessary searches.
result Significantly reduces the number of queries needed for hard-label attacks and identifies false robust models.
Depending on how much information an adversary can access to, adversarial attacks can be classified as white-box attack and black-box attack. For white-box attack, optimization-based attack algorithms such as projected gradient descent (PGD) can achieve relatively high attack success rates within moderate iterates. How…
New method handles uncertainty in adversarial attacks using ensemble noise simulation.
problem Uncertainty in adversarial attacks on neural networks.
method Simulates attacker's noisy perturbation using various gradient-based attack algorithms and a pre-processing Denoising Autoencoder (DAE) defense.
result Significant improvements in post-attack accuracy with the proposed ensemble-trained defense.
Control policies, trained using the Deep Reinforcement Learning, have been recently shown to be vulnerable to adversarial attacks introducing even very small perturbations to the policy input. The attacks proposed so far have been designed using heuristics, and build on existing adversarial example crafting techniques …
New attacks reveal membership in label-only ML models.
problem Vulnerability of ML models to membership inference attacks.
method Developed decision-based membership inference attacks.
result Label-only exposures are vulnerable to membership leakage.
Adversarial attacks for image classification are small perturbations to images that are designed to cause misclassification by a model. Adversarial attacks formally correspond to an optimization problem: find a minimum norm image perturbation, constrained to cause misclassification. A number of effective attacks have b…
This paper proposes multi-view attack strategies for deep models.
problem Vulnerability of multi-view deep models to adversarial attacks.
method Two multi-view attack strategies: two-stage attack (TSA) and end-to-end attack (ETEA).
result Proposed multi-view attack strategies are effective on multi-view deep models.
New attacks can infer model training membership using only label predictions, not confidence.
problem Inferring whether a data point was used to train a machine learning model.
method Evaluate model's predicted labels under perturbations to infer membership.
result Label-only attacks perform as well as confidence-based attacks and break defenses that rely on confidence masking.
Pixle attacks images by rearranging pixels, bypassing neural networks.
problem Vulnerability of neural networks to black-box adversarial attacks.
method A novel attack that rearranges a small number of pixels in images.
result Successfully attacks a high percentage of samples on various datasets and models.