IBM / ZOO-Attack
Codes for reproducing the black-box adversarial attacks in “ZOO: Zeroth Order Optimization based Black-box Attacks to Deep Neural Networks without Training Substitute Models,” ACM CCS Workshop on AI-Security, 2017
☆55Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for ZOO-Attack
- Codes for reproducing query-efficient black-box attacks in “AutoZOOM: Autoencoder-based Zeroth Order Optimization Method for Attacking B…☆57Updated 4 years ago
- ☆79Updated 3 years ago
- ☆53Updated last year
- ZOO: Zeroth Order Optimization based Black-box Attacks to Deep Neural Networks☆166Updated 3 years ago
- Code for "Prior Convictions: Black-Box Adversarial Attacks with Bandits and Priors"☆61Updated 4 years ago
- Blackbox attacks for deep neural network models☆70Updated 6 years ago
- ☆46Updated 3 years ago
- Repository for Certified Defenses for Adversarial Patch ICLR-2020☆32Updated 4 years ago
- AAAI 2019 oral presentation☆50Updated 3 months ago
- Analysis of Adversarial Logit Pairing☆60Updated 6 years ago
- ☆41Updated last year
- Official TensorFlow implementation of "Parsimonious Black-Box Adversarial Attacks via Efficient Combinatorial Optimization" (ICML 2019)☆36Updated 3 years ago
- Code for FAB-attack☆32Updated 4 years ago
- code we used in Decision Boundary Analysis of Adversarial Examples https://openreview.net/forum?id=BkpiPMbA-☆27Updated 6 years ago
- Code for "Diversity can be Transferred: Output Diversification for White- and Black-box Attacks"☆53Updated 4 years ago
- Code for Black-Box Adversarial Attack with Transferable Model-based Embedding☆56Updated 4 years ago
- Implementation of the Boundary Attack algorithm as described in Brendel, Wieland, Jonas Rauber, and Matthias Bethge. "Decision-Based Adve…☆91Updated 3 years ago
- Code and data for the ICLR 2021 paper "Perceptual Adversarial Robustness: Defense Against Unseen Threat Models".☆54Updated 2 years ago
- Adversarial Distributional Training (NeurIPS 2020)☆60Updated 3 years ago
- RayS: A Ray Searching Method for Hard-label Adversarial Attack (KDD2020)☆55Updated 4 years ago
- Feature Scattering Adversarial Training (NeurIPS19)☆71Updated 5 months ago
- Generalized Data-free Universal Adversarial Perturbations☆69Updated 6 years ago
- Code for the paper "Adversarial Training and Robustness for Multiple Perturbations", NeurIPS 2019☆46Updated last year
- Code for the unrestricted adversarial examples paper (NeurIPS 2018)☆63Updated 5 years ago
- ☆55Updated 2 years ago
- Source code for Learning Transferable Adversarial Examples via Ghost Networks (AAAI2020)☆59Updated 5 years ago
- Sparse and Imperceivable Adversarial Attacks (accepted to ICCV 2019).☆40Updated 4 years ago
- ☆11Updated 4 years ago
- Code for paper "Characterizing Adversarial Subspaces Using Local Intrinsic Dimensionality".☆122Updated 4 years ago
- MACER: MAximizing CErtified Radius (ICLR 2020)☆28Updated 4 years ago