{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,9]],"date-time":"2026-03-09T23:04:55Z","timestamp":1773097495614,"version":"3.50.1"},"reference-count":31,"publisher":"Springer Science and Business Media LLC","issue":"6","license":[{"start":{"date-parts":[[2025,4,24]],"date-time":"2025-04-24T00:00:00Z","timestamp":1745452800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,4,24]],"date-time":"2025-04-24T00:00:00Z","timestamp":1745452800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Mach Learn"],"published-print":{"date-parts":[[2025,6]]},"DOI":"10.1007\/s10994-025-06775-4","type":"journal-article","created":{"date-parts":[[2025,4,24]],"date-time":"2025-04-24T21:51:13Z","timestamp":1745531473000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["Gentle local robustness implies generalization"],"prefix":"10.1007","volume":"114","author":[{"given":"Khoat","family":"Than","sequence":"first","affiliation":[]},{"given":"Dat","family":"Phan","sequence":"additional","affiliation":[]},{"given":"Giang","family":"Vu","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2025,4,24]]},"reference":[{"key":"6775_CR1","unstructured":"Arora, S., Ge, R., Neyshabur, B., & Zhang, Y. (2018). Stronger generalization bounds for deep nets via a compression approach. In International conference on machine learning (pp. 254\u2013263). PMLR."},{"key":"6775_CR2","first-page":"6240","volume":"30","author":"PL Bartlett","year":"2017","unstructured":"Bartlett, P. L., Foster, D. J., & Telgarsky, M. J. (2017). Spectrally-normalized margin bounds for neural networks. Advances in Neural Information Processing Systems, 30, 6240\u20136249.","journal-title":"Advances in Neural Information Processing Systems"},{"key":"6775_CR3","first-page":"463","volume":"3","author":"PL Bartlett","year":"2002","unstructured":"Bartlett, P. L., & Mendelson, S. (2002). Rademacher and gaussian complexities: Risk bounds and structural results. Journal of Machine Learning Research, 3, 463\u2013482.","journal-title":"Journal of Machine Learning Research"},{"key":"6775_CR4","doi-asserted-by":"publisher","first-page":"259","DOI":"10.1016\/j.neucom.2014.09.044","volume":"151","author":"A Bellet","year":"2015","unstructured":"Bellet, A., & Habrard, A. (2015). Robustness and generalization for metric learning. Neurocomputing, 151, 259\u2013267.","journal-title":"Neurocomputing"},{"key":"6775_CR5","unstructured":"Biggs, F., & Guedj, B. (2022). Non-vacuous generalisation bounds for shallow neural networks. In International conference on machine learning (pp. 1963\u20131981). PMLR."},{"key":"6775_CR6","unstructured":"Biggs, F., & Guedj, B. (2023). Tighter PAC-bayes generalisation bounds by leveraging example difficulty. In International conference on artificial intelligence and statistics (pp. 8165\u20138182). PMLR."},{"key":"6775_CR7","unstructured":"Feldman, V., & Vondrak, J. (2019). High probability generalization bounds for uniformly stable algorithms with nearly optimal rate. In Conference on learning theory (pp. 1270\u20131279). PMLR."},{"issue":"2","key":"6775_CR8","doi-asserted-by":"publisher","first-page":"473","DOI":"10.1093\/imaiai\/iaz007","volume":"9","author":"N Golowich","year":"2020","unstructured":"Golowich, N., Rakhlin, A., & Shamir, O. (2020). Size-independent sample complexity of neural networks. Information and Inference: A Journal of the IMA, 9(2), 473\u2013504.","journal-title":"Information and Inference: A Journal of the IMA"},{"key":"6775_CR9","unstructured":"Haddouche, M., & Guedj, B. (2023). PAC-Bayes generalisation bounds for heavy-tailed losses through supermartingales. Transactions on Machine Learning Research. https:\/\/openreview.net\/pdf?id=qxrwt6F3sf"},{"key":"6775_CR10","first-page":"1","volume":"24","author":"S Hou","year":"2023","unstructured":"Hou, S., Kassraie, P., Kratsios, A., Krause, A., & Rothfuss, J. (2023). Instance-dependent generalization bounds via optimal transport. Journal of Machine Learning Research, 24, 1\u201350.","journal-title":"Journal of Machine Learning Research"},{"key":"6775_CR11","unstructured":"Kawaguchi, K., Deng, Z., Luh, K., & Huang, J. (2022). Robustness implies generalization via data-dependent generalization bounds. In International conference on machine learning (pp. 10866\u201310894). PMLR."},{"key":"6775_CR12","unstructured":"Khromov, G., & Singh, S. P. (2024). Some intriguing aspects about Lipschitz continuity of neural networks. In International conference on learning representations."},{"key":"6775_CR13","unstructured":"Lei, Y., & Ying, Y. (2020). Fine-grained analysis of stability and generalization for stochastic gradient descent. In International conference on machine learning (pp. 5809\u20135819)."},{"issue":"04","key":"6775_CR14","doi-asserted-by":"publisher","first-page":"1352","DOI":"10.1109\/TPAMI.2019.2948352","volume":"43","author":"S Li","year":"2021","unstructured":"Li, S., Jia, K., Wen, Y., Liu, T., & Tao, D. (2021). Orthogonal deep neural networks. IEEE Transactions on Pattern Analysis & Machine Intelligence, 43(04), 1352\u20131368.","journal-title":"IEEE Transactions on Pattern Analysis & Machine Intelligence"},{"issue":"5","key":"6775_CR15","doi-asserted-by":"publisher","first-page":"1129","DOI":"10.1109\/TKDE.2017.2650229","volume":"29","author":"H Liu","year":"2017","unstructured":"Liu, H., Wu, J., Liu, T., Tao, D., & Fu, Y. (2017). Spectral ensemble clustering via weighted k-means: Theoretical and practical evidence. IEEE Transactions on Knowledge and Data Engineering, 29(5), 1129\u20131143.","journal-title":"IEEE Transactions on Knowledge and Data Engineering"},{"key":"6775_CR16","unstructured":"Madry, A., Makelov, A., Schmidt, L., Tsipras, D., & Vladu, A. (2018). Towards deep learning models resistant to adversarial attacks. In International conference on learning representations."},{"issue":"3","key":"6775_CR17","doi-asserted-by":"publisher","first-page":"355","DOI":"10.1023\/A:1007618624809","volume":"37","author":"DA McAllester","year":"1999","unstructured":"McAllester, D. A. (1999). Some PAC-Bayesian theorems. Machine Learning, 37(3), 355\u2013363.","journal-title":"Machine Learning"},{"key":"6775_CR18","unstructured":"Mustafa, W., Liznerski, P., Ledent, A., Wagner, D., Wang, P., & Kloft, M. (2024). Non-vacuous generalization bounds for adversarial risk in stochastic neural networks. In International conference on artificial intelligence and statistics (pp. 4528\u20134536). PMLR."},{"key":"6775_CR19","unstructured":"Neyshabur, B., Bhojanapalli, S., & Srebro, N. (2018). A PAC-Bayesian approach to spectrally-normalized margin bounds for neural networks. In International conference on learning representations."},{"issue":"1","key":"6775_CR21","doi-asserted-by":"publisher","first-page":"305","DOI":"10.1016\/j.patcog.2012.06.019","volume":"46","author":"Z Qi","year":"2013","unstructured":"Qi, Z., Tian, Y., & Shi, Y. (2013). Robust twin support vector machine for pattern classification. Pattern Recognition, 46(1), 305\u2013316.","journal-title":"Pattern Recognition"},{"key":"6775_CR20","unstructured":"Qin, C., Martens, J., Gowal, S., Krishnan, D., Dvijotham, K., Fawzi, A., De, S., Stanforth, R., & Kohli, P. (2019). Adversarial robustness through local linearization. In Advances in neural information processing systems (Vol. 32)."},{"key":"6775_CR22","first-page":"2635","volume":"11","author":"S Shalev-Shwartz","year":"2010","unstructured":"Shalev-Shwartz, S., Shamir, O., Srebro, N., & Sridharan, K. (2010). Learnability, stability and uniform convergence. The Journal of Machine Learning Research, 11, 2635\u20132670.","journal-title":"The Journal of Machine Learning Research"},{"key":"6775_CR23","doi-asserted-by":"crossref","unstructured":"Shi, Y., Bellet, A., & Sha, F. (2014). Sparse compositional metric learning. In Proceedings of the AAAI conference on artificial intelligence (Vol. 28).","DOI":"10.1609\/aaai.v28i1.8968"},{"key":"6775_CR24","unstructured":"Sokolic, J., Giryes, R., Sapiro, G., & Rodrigues, M. (2017). Generalization error of invariant classifiers. In Artificial intelligence and statistics (pp. 1094\u20131103). PMLR."},{"issue":"16","key":"6775_CR25","doi-asserted-by":"publisher","first-page":"4265","DOI":"10.1109\/TSP.2017.2708039","volume":"65","author":"J Sokolic","year":"2017","unstructured":"Sokolic, J., Giryes, R., Sapiro, G., & Rodrigues, M. R. (2017). Robust large margin deep neural networks. IEEE Transactions on Signal Processing, 65(16), 4265\u20134280.","journal-title":"IEEE Transactions on Signal Processing"},{"key":"6775_CR26","unstructured":"Wei, C., & Ma, T. (2019). Data-dependent sample complexity of deep neural networks via Lipschitz augmentation. In Advances in neural information processing systems."},{"key":"6775_CR27","doi-asserted-by":"publisher","first-page":"151","DOI":"10.1007\/s11633-019-1211-x","volume":"17","author":"H Xu","year":"2020","unstructured":"Xu, H., Ma, Y., Liu, H.-C., Deb, D., Liu, H., Tang, J.-L., & Jain, A. K. (2020). Adversarial attacks and defenses in images, graphs and text: A review. International Journal of Automation and Computing, 17, 151\u2013178.","journal-title":"International Journal of Automation and Computing"},{"issue":"3","key":"6775_CR28","doi-asserted-by":"publisher","first-page":"391","DOI":"10.1007\/s10994-011-5268-1","volume":"86","author":"H Xu","year":"2012","unstructured":"Xu, H., & Mannor, S. (2012). Robustness and generalization. Machine Learning, 86(3), 391\u2013423.","journal-title":"Machine Learning"},{"key":"6775_CR29","unstructured":"Zhang, C., Bengio, S., Hardt, M., Recht, B., & Vinyals, O. (2017). Understanding deep learning requires rethinking generalization. In International conference on learning representations."},{"issue":"8","key":"6775_CR31","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3547330","volume":"55","author":"S Zhou","year":"2022","unstructured":"Zhou, S., Liu, C., Ye, D., Zhu, T., Zhou, W., & Yu, P. S. (2022). Adversarial attacks and defenses in deep learning: From a perspective of cybersecurity. ACM Computing Surveys, 55(8), 1\u201339.","journal-title":"ACM Computing Surveys"},{"key":"6775_CR30","unstructured":"Zhou, W., Veitch, V., Austern, M., Adams, R. P., & Orbanz, P. (2019). Non-vacuous generalization bounds at the imagenet scale: a PAC-Bayesian compression approach. In International conference on learning representations (ICLR)."}],"container-title":["Machine Learning"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10994-025-06775-4.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10994-025-06775-4\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10994-025-06775-4.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,5,21]],"date-time":"2025-05-21T16:18:43Z","timestamp":1747844323000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10994-025-06775-4"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,4,24]]},"references-count":31,"journal-issue":{"issue":"6","published-print":{"date-parts":[[2025,6]]}},"alternative-id":["6775"],"URL":"https:\/\/doi.org\/10.1007\/s10994-025-06775-4","relation":{},"ISSN":["0885-6125","1573-0565"],"issn-type":[{"value":"0885-6125","type":"print"},{"value":"1573-0565","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,4,24]]},"assertion":[{"value":"9 December 2024","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"25 March 2025","order":2,"name":"revised","label":"Revised","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"26 March 2025","order":3,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"24 April 2025","order":4,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"The authors declare that they have no conflict of interest.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}},{"value":"Not applicable.","order":3,"name":"Ethics","group":{"name":"EthicsHeading","label":"Ethics approval and consent to participate"}},{"value":"Not applicable.","order":4,"name":"Ethics","group":{"name":"EthicsHeading","label":"Materials availability"}}],"article-number":"142"}}