DiversityCanBeTransferred: OutputDiversification for White-andBlack-boxAttacks
–Neural Information Processing Systems
Adversarial attacks ofteninvolverandom perturbations oftheinputsdrawnfrom uniform or Gaussian distributions, e.g., to initialize optimization-based whitebox attacks or generate update directions in black-box attacks. These simple perturbations, however, could be sub-optimal as they are agnostic to the model being attacked.
Neural Information Processing Systems
Feb-7-2026, 23:55:13 GMT
- Country:
- North America
- Asia > Japan
- Honshū > Kantō > Tokyo Metropolis Prefecture > Tokyo (0.15)
- Industry:
- Transportation (0.39)
- Information Technology > Security & Privacy (0.36)
- Technology: