Adversarial Attack on Attackers: Post-Process to Mitigate Black-Box Score-Based Query Attacks Sizhe Chen
–Neural Information Processing Systems
Following this idea, we propose a novel defense, namely Adversarial Attack on Attackers (AAA), to confound SQAs towards incorrect attack directions by slightly modifying the output logits.
Neural Information Processing Systems
Aug-15-2025, 05:52:56 GMT
- Country:
- Asia
- China > Shanghai
- Shanghai (0.04)
- Middle East > Jordan (0.04)
- China > Shanghai
- Europe > Belgium
- Flanders > Flemish Brabant > Leuven (0.04)
- North America > United States
- California > Santa Cruz County > Santa Cruz (0.04)
- Asia
- Genre:
- Research Report (0.46)
- Industry:
- Government > Military (0.62)
- Information Technology > Security & Privacy (0.86)
- Technology: