×
Aug 14, 2017 · ZOO: Zeroth Order Optimization based Black-box Attacks to Deep Neural Networks without Training Substitute Models. Authors:Pin-Yu Chen, Huan ...
People also ask
We propose zeroth order optimization (ZOO) based attacks to directly estimate the gradients of the targeted DNN for generating adversarial examples.
ZOO is a zeroth order optimization based attack to attack deep neural networks (DNNs). We propose an effective black-box attack that only requires access to ...
Furthermore, researchers have shown that these adversarial images are highly transferable by simply training and attacking a substitute model built upon the ...
An effective black-box attack that also only has access to the input (images) and the output (confidence scores) of a targeted DNN is proposed.
Sep 6, 2024 · By exploiting zeroth order optimization, improved attacks to the targeted DNN can be accomplished, sparing the need for training substitute ...
As illustrated in Figure 2, the black-box setting allows free query from a targeted DNN but prohibits any access to internal configurations (e.g., back ...
Nov 3, 2017 · We use zeroth order stochastic coordinate descent along with dimension reduction, hierarchical attack and importance sampling techniques to ...
Sep 27, 2024 · The ZOO method brings up important questions about the robustness of machine learning models. If attackers can successfully fool a model without ...
Jan 2, 2023 · Bibliographic details on ZOO: Zeroth Order Optimization Based Black-box Attacks to Deep Neural Networks without Training Substitute Models.