Improving Black-box Adversarial Attacks with a Transfer-based Prior
Shuyu Cheng, Yinpeng Dong, Tianyu Pang, Hang Su, Jun Zhu
–Neural Information Processing Systems
We consider the black-box adversarial setting, where the adversary has to generate adversarial perturbations without access to the target models to compute gradients.
Neural Information Processing Systems
Feb-11-2026, 20:41:51 GMT