Fetching the paper…
Reading the bibliography…
Many optimization methods for generating black-box adversarial examples have been proposed, but the aspect of initializing said optimizers has not been considered in much detail.
Rethinking the inception architecture for computer vision
C. Szegedy, V. Vanhoucke, S. Ioffe, J. Shlens, and Z. Wojna · 2015
Earlier work this paper cites.
Inception-v4, inception-resnet and the impact of residual connections on learning
C. Szegedy, S. Ioffe, and V. Vanhoucke · 2016
Earlier work this paper cites.
Zoo: Zeroth order optimization based black-box attacks to deep neural networks without training substitute models
P.-Y. Chen, H. Zhang, Y. Sharma, J. Yi, and C.-J. Hsieh · 2017
Earlier work this paper cites.
Practical black-box attacks against machine learning
N. Papernot, P. McDaniel, I. Goodfellow, S. Jha, Z. B. Celik, and A. Swami · 2017
Earlier work this paper cites.
Decision-based adversarial attacks: Reliable attacks against black-box machine learning models
W. Brendel, J. Rauber, and M. Bethge · 2018
Earlier work this paper cites.
W. Brendel, J. Rauber, A. Kurakin, N. Papernot, B. Veliqi, M. Salathé, S. P. Mohanty, and M. Bethge · 2018
Cited alongside, same era.
T. B. Brown, D. Mané, A. Roy, M. Abadi, and J. Gilmer · 2018
Cited alongside, same era.
Guessing smart: Biased sampling for efficient black-box adversarial attacks
T. Brunner, F. Diehl, M. Truong Le, and A. Knoll · 2018
Cited alongside, same era.
Low frequency adversarial perturbation
C. Guo, J. S. Frank, and K. Q. Weinberger · 2018
Cited alongside, same era.
Black-box adversarial attacks with limited queries and information
A. Ilyas, L. Engstrom, A. Athalye, and J. Lin · 2018
Prior convictions: Black-box adversarial attacks with bandits and priors
A. Ilyas, L. Engstrom, and A. Madry · 2018
Later among the works it cites.
Towards Deep Learning Models Resistant to Adversarial Attacks
A. Madry, A. Makelov, L. Schmidt, D. Tsipras, and A. Vladu · 2018
Later among the works it cites.
Ensemble adversarial training: Attacks and defenses
F. Tramèr, A. Kurakin, N. Papernot, I. Goodfellow, D. Boneh, and P. McDaniel · 2018
Later among the works it cites.
Autozoom: Autoencoder-based zeroth order optimization method for attacking black-box neural networks
C. Tu, P. Ting, P. Chen, S. Liu, H. Zhang, J. Yi, C. Hsieh, and S. Cheng · 2018
Later among the works it cites.
Query-efficient hard-label black-box attack: An optimization-based approach
M. Cheng, T. Le, P.-Y. Chen, J. Yi, H. Zhang, and C.-J. Hsieh · 2019
Closest in time.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Cited alongside, same era.