Robust Decision-based black-box adversarial attack via Coarse-to-fine Random Search

Cited 3 time in webofscience Cited 0 time in scopus
  • Hit : 178
  • Download : 0
DC FieldValueLanguage
dc.contributor.authorKim, Byeong Cheonko
dc.contributor.authorYu, Youngjoonko
dc.contributor.authorRo, Yong Manko
dc.date.accessioned2021-09-28T02:11:20Z-
dc.date.available2021-09-28T02:11:20Z-
dc.date.created2021-06-01-
dc.date.created2021-06-01-
dc.date.issued2021-09-20-
dc.identifier.citationIEEE International Conference on Image Processing (ICIP), pp.3048 - 3052-
dc.identifier.issn1522-4880-
dc.identifier.urihttp://hdl.handle.net/10203/287915-
dc.description.abstractMany studies on reducing the adversarial vulnerability of deep neural networks have been published in the field of machine learning. To evaluate the actual robustness of networks, various adversarial attacks have been proposed. Most previous works have focused on white-box settings which assume that the adversary can have full access to the target models. Since they are not practical in real-world situations, recent studies on black-box attacks have received a lot of attention. However, existing black-box attacks have critical limitations, such as yielding a low attack success rate or relying too much on gradient estimation and decision boundaries. Those attacks are ineffective against weak defenses using gradient obfuscation. In this paper, we propose a novel gradient-free decision-based black-box attack using random search optimization. The proposed method only needs a hard-label (decision-based) and is effective against defenses using gradient obfuscation. Experimental results validate its query-efficiency and improved L-2 distance.-
dc.languageEnglish-
dc.publisherIEEE Signal Processing Society-
dc.titleRobust Decision-based black-box adversarial attack via Coarse-to-fine Random Search-
dc.typeConference-
dc.identifier.wosid000819455103034-
dc.type.rimsCONF-
dc.citation.beginningpage3048-
dc.citation.endingpage3052-
dc.citation.publicationnameIEEE International Conference on Image Processing (ICIP)-
dc.identifier.conferencecountryUS-
dc.identifier.conferencelocationAnchorage, Alaska-
dc.identifier.doi10.1109/ICIP42928.2021.9506464-
dc.contributor.localauthorRo, Yong Man-
dc.contributor.nonIdAuthorKim, Byeong Cheon-
dc.contributor.nonIdAuthorYu, Youngjoon-
Appears in Collection
EE-Conference Papers(학술회의논문)
Files in This Item
There are no files associated with this item.
This item is cited by other documents in WoS
⊙ Detail Information in WoSⓡ Click to see webofscience_button
⊙ Cited 3 items in WoS Click to see citing articles in records_button

qr_code

  • mendeley

    citeulike


rss_1.0 rss_2.0 atom_1.0