1. Evasion attacks against machine learning at test time;Biggio,2013
2. Decision-based adversarial attacks: reliable attacks against black-box machine learning models;Brendel,2018
3. Towards evaluating the robustness of neural networks;Carlini,2017
4. ZOO: zeroth order optimization based black-box attacks to deep neural networks without training substitute models;Chen,2017
5. Sparse-RS: a versatile framework for query-efficient sparse black-box adversarial attacks;Croce;Proc. AAAI Conf. Artif. Intell.,2022