Adversarial Attack on Attackers: Post-Process to Mitigate Black-Box Score-Based Query Attacks Sizhe Chen
–Neural Information Processing Systems
Following this idea, we propose a novel defense, namely Adversarial Attack on Attackers (AAA), to confound SQAs towards incorrect attack directions by slightly modifying the output logits.
Neural Information Processing Systems
Aug-15-2025, 05:52:56 GMT
- Country:
- Asia > China (0.14)
- North America > United States
- California (0.14)
- Genre:
- Research Report (0.46)
- Industry:
- Government > Military (0.62)
- Information Technology > Security & Privacy (0.86)
- Technology: