Rethinking the Backward Propagation for Adversarial Transferability
–Neural Information Processing Systems
Transfer-based attacks generate adversarial examples on the surrogate model, which can mislead other black-box models without access, making it promising to attack real-world applications. Recently, several works have been proposed to boost adversarial transferability, in which the surrogate model is usually overlooked. In this work, we identify that non-linear layers (e.g.
Neural Information Processing Systems
Apr-24-2026, 08:56:35 GMT
- Genre:
- Research Report > New Finding (0.46)
- Industry:
- Information Technology > Security & Privacy (0.95)
- Technology: