Fetching the paper…
Reading the bibliography…
Black-box query-based attacks constitute significant threats to Machine Learning as a Service (MLaaS) systems since they can generate adversarial examples without accessing the target model's architecture and parameters.
Imagenet: A large-scale hierarchical image database
Deng, J., Dong, W., Socher, R., Li, L., Li, K., and Fei-Fei, L · 2009
Earlier work this paper cites.
Learning Multiple Layers of Features from Tiny Images
Krizhevsky, A · 2009
Earlier work this paper cites.
Intriguing properties of neural networks
Szegedy, C., Zaremba, W., Sutskever, I., Bruna, J., Erhan, D., Goodfellow, I. J., and Fergus, R · 2014
Earlier work this paper cites.
Explaining and harnessing adversarial examples
Goodfellow, I. J., Shlens, J., and Szegedy, C · 2015
Earlier work this paper cites.
Deep residual learning for image recognition
He, K., Zhang, X., Ren, S., and Sun, J · 2016
Earlier work this paper cites.
On the effectiveness of defensive distillation
Papernot, N. and McDaniel, P. D · 2016
Earlier work this paper cites.
Wide residual networks
Zagoruyko, S. and Komodakis, N · 2016
Earlier work this paper cites.
Towards evaluating the robustness of neural networks
Carlini, N. and Wagner, D. A · 2017
Earlier work this paper cites.
Enhanced deep residual networks for single image super-resolution
Lim, B., Son, S., Kim, H., Nah, S., and Lee, K. M · 2017
Earlier work this paper cites.
Delving into transferable adversarial examples and black-box attacks
Liu, Y., Chen, X., Liu, C., and Song, D · 2017
Earlier work this paper cites.
Random gradient-free minimization of convex functions
Nesterov, Y. E. and Spokoiny, V. G · 2017
Earlier work this paper cites.
Decision-based adversarial attacks: Reliable attacks against black-box machine learning models
Brendel, W., Rauber, J., and Bethge, M · 2018
Earlier work this paper cites.
Black-box adversarial attacks with limited queries and information
Ilyas, A., Engstrom, L., Athalye, A., and Lin, J · 2018
Earlier work this paper cites.
Towards robust neural networks via random self-ensemble
Liu, X., Cheng, M., Zhang, H., and Hsieh, C · 2018
Earlier work this paper cites.
Towards deep learning models resistant to adversarial attacks
Madry, A., Makelov, A., Schmidt, L., Tsipras, D., and Vladu, A · 2018
Earlier work this paper cites.
Adversarial robustness toolbox v1.2.0
Nicolae, M.-I., Sinn, M., Tran, M. N., Buesser, B., Rawat, A., Wistuba, M., Zantedeschi, V., Baracaldo, N., Chen, B., Ludwig, H., Molloy, I., and Edwards, B · 2018
Earlier work this paper cites.
Ensemble adversarial training: Attacks and defenses
Tramèr, F., Kurakin, A., Papernot, N., Goodfellow, I. J., Boneh, D., and McDaniel, P. D · 2018
Earlier work this paper cites.
Feature squeezing: Detecting adversarial examples in deep neural networks
Xu, W., Evans, D., and Qi, Y · 2018
Cited alongside, same era.
Adversarial sensor attack on lidar-based perception in autonomous driving
Cao, Y., Xiao, C., Cyr, B., Zhou, Y., Park, W., Rampazzi, S., Chen, Q. A., Fu, K., and Mao, Z. M · 2019
Cited alongside, same era.
Query-efficient hard-label black-box attack: An optimization-based approach
Cheng, M., Le, T., Chen, P., Zhang, H., Yi, J., and Hsieh, C · 2019
Cited alongside, same era.
Certified adversarial robustness via randomized smoothing
Cohen, J., Rosenfeld, E., and Kolter, J. Z · 2019
Cited alongside, same era.
Efficient decision-based black-box adversarial attacks on face recognition
Dong, Y., Su, H., Wu, B., Li, Z., Liu, W., Zhang, T., and Zhu, J · 2019
Cited alongside, same era.
Simple black-box adversarial attacks
Guo, C., Gardner, J. R., You, Y., Wilson, A. G., and Weinberger, K. Q · 2019
Learning continuous image representation with local implicit image function
Chen, Y., Liu, S., and Wang, X · 2021
Later among the works it cites.
Robustbench: a standardized adversarial robustness benchmark
Croce, F., Andriushchenko, M., Sehwag, V., Debenedetti, E., Flammarion, N., Chiang, M., Mittal, P., and Hein, M · 2021
Later among the works it cites.
Adversarial attacks are reversible with natural supervision
Mao, C., Chiquier, M., Wang, H., Yang, J., and Vondrick, C · 2021
Later among the works it cites.
Random noise defense against query-based black-box attacks
Qin, Z., Fan, Y., Zha, H., and Wu, B · 2021
Later among the works it cites.
Adversarial purification with score-based generative models
Yoon, J., Hwang, S. J., and Lee, J · 2021
Later among the works it cites.
Image super-resolution using very deep residual channel attention networks
Zhang, Y., Li, K., Li, K., Wang, L., Zhong, B., and Fu, Y · 2021
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Cited alongside, same era.
signsgd via zeroth-order oracle
Liu, S., Chen, P., Chen, X., and Hong, M · 2019
Cited alongside, same era.
Barrage of random transforms for adversarially robust defense
Raff, E., Sylvester, J., Forsyth, S., and McLean, M · 2019
Cited alongside, same era.
Sign bits are all you need for black-box attacks
Al-Dujaili, A. and O’Reilly, U · 2020
Cited alongside, same era.
Square attack: A query-efficient black-box adversarial attack via random search
Andriushchenko, M., Croce, F., Flammarion, N., and Hein, M · 2020
Cited alongside, same era.
Hopskipjumpattack: A query-efficient decision-based attack
Chen, J., Jordan, M. I., and Wainwright, M. J · 2020
Cited alongside, same era.
Sign-opt: A query-efficient hard-label adversarial attack
Cheng, M., Singh, S., Chen, P. H., Chen, P., Liu, S., and Hsieh, C · 2020
Cited alongside, same era.
Later among the works it cites.
Boundary defense against black-box adversarial attacks
Aithal, M. B. and Li, X · 2022
Later among the works it cites.
Adversarial attack on attackers: Post-process to mitigate black-box score-based query attacks
Chen, S., Huang, Z., Tao, Q., Wu, Y., Xie, C., and Huang, X · 2022
Later among the works it cites.
DISCO: adversarial defense with local implicit functions
Ho, C. and Vasconcelos, N · 2022
Later among the works it cites.
Diffusion models for adversarial purification
Nie, W., Guo, B., Huang, Y., Xiao, C., Vahdat, A., and Anandkumar, A · 2022
Later among the works it cites.
Demystifying the adversarial robustness of random transformation defenses
Sitawarin, C., Golan-Strieb, Z. J., and Wagner, D. A · 2022
Later among the works it cites.
(certified!!) adversarial robustness for free!
Carlini, N., Tramèr, F., Dvijotham, K. D., Rice, L., Sun, M., and Kolter, J. Z · 2023
Later among the works it cites.
The generative developer platform
Clarifai, I · 2023
Later among the works it cites.
Resnet18 trained on cifar10
Dadalto, E · 2023
Later among the works it cites.
Visual ai
Google · 2023
Later among the works it cites.
Resnet50 - torchvision main documentation
Torchvision · 2023
Later among the works it cites.
Facebook user data: 845m monthly users, 2.7b daily likes & comments
VentureBeat · 2023
Later among the works it cites.