paper-with-me

홈 › Papers

Evaluation of Four Black-box Adversarial Attacks and Some Query-efficient Improvement Analysis

2022-01-13 · Rui Wang

With the fast development of machine learning technologies, deep learning models have been deployed in almost every aspect of everyday life. However, the privacy and security of these models are threatened by adversarial attacks. Among which black-box attack is closer to reality, where limited knowledge can be acquired from the model. In this paper, we provided basic background knowledge about adversarial attack and analyzed four black-box attack algorithms: Bandits, NES, Square Attack and ZOsignSGD comprehensively. We also explored the newly proposed Square Attack method with respect to square size, hoping to improve its query efficiency.

📄 PDF Abstract BibTeX arXiv:2201.05001

Code (0)

등록된 구현이 없습니다.

Tasks

Adversarial Attack

Similar Papers 제목 키워드 기반

Back in Black: A Comparative Evaluation of Recent State-Of-The-Art Black-Box Attacks

2021-09-29 · Kaleel Mahmood, Rigel Mahmood, Ethan Rathbun, Marten van Dijk

The field of adversarial machine learning has experienced a near exponential growth in the amount of papers being produced since 2018. This massive information output has yet to be properly processed and categorized. In …

BIG-bench Machine Learning

Patch of Invisibility: Naturalistic Physical Black-Box Adversarial Attacks on Object Detectors

2023-03-07 · Raz Lapid, Eylon Mizrahi, Moshe Sipper

Adversarial attacks on deep-learning models have been receiving increased attention in recent years. Work in this area has mostly focused on gradient-based techniques, so-called "white-box" attacks, wherein the attacker …

Generative Adversarial Networkobject-detectionObject Detection

RobustBlack: Challenging Black-Box Adversarial Attacks on State-of-the-Art Defenses

2024-12-30 · Mohamed Djilani, Salah Ghamizi, Maxime Cordy

Although adversarial robustness has been extensively studied in white-box settings, recent advances in black-box attacks (including transfer- and query-based approaches) are primarily benchmarked against weak defenses, l…

Adversarial Robustness

Adversarial Attacks on Gaussian Process Bandits

2021-10-16 · Eric Han, Jonathan Scarlett

Gaussian processes (GP) are a widely-adopted tool used to sequentially optimize black-box functions, where evaluations are costly and potentially noisy. Recent works on GP bandits have proposed to move beyond random nois…

Adversarial AttackGaussian Processes

Adversarial training may be a double-edged sword

2021-07-24 · Ali Rahmati, Seyed-Mohsen Moosavi-Dezfooli, Huaiyu Dai

Adversarial training has been shown as an effective approach to improve the robustness of image classifiers against white-box attacks. However, its effectiveness against black-box attacks is more nuanced. In this work, w…