Matches in SemOpenAlex for { <https://semopenalex.org/work/W2913770005> ?p ?o ?g. }
- W2913770005 abstract "Transferability captures the ability of an attack against a machine-learning model to be effective against a different, potentially unknown, model. Empirical evidence for transferability has been shown in previous work, but the underlying reasons why an attack transfers or not are not yet well understood. In this paper, we present a comprehensive analysis aimed to investigate the transferability of both test-time evasion and training-time poisoning attacks. We provide a unifying optimization framework for evasion and poisoning attacks, and a formal definition of transferability of such attacks. We highlight two main factors contributing to attack transferability: the intrinsic adversarial vulnerability of the target model, and the complexity of the surrogate model used to optimize the attack. Based on these insights, we define three metrics that impact an attack's transferability. Interestingly, our results derived from theoretical analysis hold for both evasion and poisoning attacks, and are confirmed experimentally using a wide range of linear and non-linear classifiers and datasets." @default.
- W2913770005 created "2019-02-21" @default.
- W2913770005 creator A5005227623 @default.
- W2913770005 creator A5008367647 @default.
- W2913770005 creator A5021496483 @default.
- W2913770005 creator A5023265601 @default.
- W2913770005 creator A5034838576 @default.
- W2913770005 creator A5035574749 @default.
- W2913770005 creator A5054655342 @default.
- W2913770005 creator A5090024606 @default.
- W2913770005 date "2018-09-08" @default.
- W2913770005 modified "2023-09-27" @default.
- W2913770005 title "Why Do Adversarial Attacks Transfer? Explaining Transferability of Evasion and Poisoning Attacks" @default.
- W2913770005 cites W1506806321 @default.
- W2913770005 cites W1552056088 @default.
- W2913770005 cites W1887546054 @default.
- W2913770005 cites W1973400823 @default.
- W2913770005 cites W2007562169 @default.
- W2913770005 cites W2033368661 @default.
- W2913770005 cites W2038296020 @default.
- W2913770005 cites W2095195675 @default.
- W2913770005 cites W2101234009 @default.
- W2913770005 cites W2112507308 @default.
- W2913770005 cites W2122672392 @default.
- W2913770005 cites W2125908420 @default.
- W2913770005 cites W2151298633 @default.
- W2913770005 cites W2162552722 @default.
- W2913770005 cites W2167421362 @default.
- W2913770005 cites W2224750461 @default.
- W2913770005 cites W2293844262 @default.
- W2913770005 cites W2408141691 @default.
- W2913770005 cites W2529714286 @default.
- W2913770005 cites W2535873859 @default.
- W2913770005 cites W2536353943 @default.
- W2913770005 cites W2543927648 @default.
- W2913770005 cites W2570685808 @default.
- W2913770005 cites W2574797807 @default.
- W2913770005 cites W2597603852 @default.
- W2913770005 cites W2603766943 @default.
- W2913770005 cites W2612637113 @default.
- W2913770005 cites W2744095836 @default.
- W2913770005 cites W2748789698 @default.
- W2913770005 cites W2773446523 @default.
- W2913770005 cites W2774423163 @default.
- W2913770005 cites W2776412785 @default.
- W2913770005 cites W2785604928 @default.
- W2913770005 cites W2787406324 @default.
- W2913770005 cites W2962763344 @default.
- W2913770005 cites W2962777143 @default.
- W2913770005 cites W2963062382 @default.
- W2913770005 cites W2963143631 @default.
- W2913770005 cites W2963207607 @default.
- W2913770005 cites W2963249138 @default.
- W2913770005 cites W2963341057 @default.
- W2913770005 cites W2963564844 @default.
- W2913770005 cites W2963689459 @default.
- W2913770005 cites W2963777610 @default.
- W2913770005 cites W2963777745 @default.
- W2913770005 cites W2963844355 @default.
- W2913770005 cites W2963857521 @default.
- W2913770005 cites W2964043980 @default.
- W2913770005 cites W2964153729 @default.
- W2913770005 cites W2964253222 @default.
- W2913770005 cites W3104158743 @default.
- W2913770005 cites W3125213333 @default.
- W2913770005 cites W9657784 @default.
- W2913770005 hasPublicationYear "2018" @default.
- W2913770005 type Work @default.
- W2913770005 sameAs 2913770005 @default.
- W2913770005 citedByCount "5" @default.
- W2913770005 countsByYear W29137700052018 @default.
- W2913770005 countsByYear W29137700052019 @default.
- W2913770005 countsByYear W29137700052021 @default.
- W2913770005 crossrefType "posted-content" @default.
- W2913770005 hasAuthorship W2913770005A5005227623 @default.
- W2913770005 hasAuthorship W2913770005A5008367647 @default.
- W2913770005 hasAuthorship W2913770005A5021496483 @default.
- W2913770005 hasAuthorship W2913770005A5023265601 @default.
- W2913770005 hasAuthorship W2913770005A5034838576 @default.
- W2913770005 hasAuthorship W2913770005A5035574749 @default.
- W2913770005 hasAuthorship W2913770005A5054655342 @default.
- W2913770005 hasAuthorship W2913770005A5090024606 @default.
- W2913770005 hasConcept C119857082 @default.
- W2913770005 hasConcept C140331021 @default.
- W2913770005 hasConcept C154945302 @default.
- W2913770005 hasConcept C203014093 @default.
- W2913770005 hasConcept C2781251061 @default.
- W2913770005 hasConcept C37736160 @default.
- W2913770005 hasConcept C38652104 @default.
- W2913770005 hasConcept C41008148 @default.
- W2913770005 hasConcept C61272859 @default.
- W2913770005 hasConcept C71924100 @default.
- W2913770005 hasConcept C8891405 @default.
- W2913770005 hasConcept C95713431 @default.
- W2913770005 hasConceptScore W2913770005C119857082 @default.
- W2913770005 hasConceptScore W2913770005C140331021 @default.
- W2913770005 hasConceptScore W2913770005C154945302 @default.
- W2913770005 hasConceptScore W2913770005C203014093 @default.
- W2913770005 hasConceptScore W2913770005C2781251061 @default.
- W2913770005 hasConceptScore W2913770005C37736160 @default.