Meta-Learning the Search Distribution of Black-Box Random Search Based Adversarial Attacks

Neural Information Processing Systems 

Adversarial attacks based on randomized search schemes have obtained state-of-the-art results in black-box robustness evaluation recently.