Matches in SemOpenAlex for { <https://semopenalex.org/work/W3036553362> ?p ?o ?g. }
- W3036553362 abstract "Many defenses have recently been proposed at venues like NIPS, ICML, ICLR and CVPR. These defenses are mainly focused on mitigating white-box attacks. They do not properly examine black-box attacks. In this paper, we expand upon the analysis of these defenses to include adaptive black-box adversaries. Our evaluation is done on nine defenses including Barrage of Random Transforms, ComDefend, Ensemble Diversity, Feature Distillation, The Odds are Odd, Error Correcting Codes, Distribution Classifier Defense, K-Winner Take All and Buffer Zones. Our investigation is done using two black-box adversarial models and six widely studied adversarial attacks for CIFAR-10 and Fashion-MNIST datasets. Our analyses show most recent defenses (7 out of 9) provide only marginal improvements in security ($<25%$), as compared to undefended networks. For every defense, we also show the relationship between the amount of data the adversary has at their disposal, and the effectiveness of adaptive black-box attacks. Overall, our results paint a clear picture: defenses need both thorough white-box and black-box analyses to be considered secure. We provide this large scale study and analyses to motivate the field to move towards the development of more robust black-box defenses." @default.
- W3036553362 created "2020-06-25" @default.
- W3036553362 creator A5002144478 @default.
- W3036553362 creator A5053352602 @default.
- W3036553362 creator A5061545468 @default.
- W3036553362 creator A5075756968 @default.
- W3036553362 date "2020-06-18" @default.
- W3036553362 modified "2023-09-23" @default.
- W3036553362 title "Beware the Black-Box: on the Robustness of Recent Defenses to Adversarial Examples" @default.
- W3036553362 cites W1522301498 @default.
- W3036553362 cites W2108598243 @default.
- W3036553362 cites W2163605009 @default.
- W3036553362 cites W2194775991 @default.
- W3036553362 cites W2302255633 @default.
- W3036553362 cites W2408141691 @default.
- W3036553362 cites W2570685808 @default.
- W3036553362 cites W2603766943 @default.
- W3036553362 cites W2750384547 @default.
- W3036553362 cites W2768899812 @default.
- W3036553362 cites W2774644650 @default.
- W3036553362 cites W2798801120 @default.
- W3036553362 cites W2912070915 @default.
- W3036553362 cites W2913848079 @default.
- W3036553362 cites W2914897181 @default.
- W3036553362 cites W2915002466 @default.
- W3036553362 cites W2932048622 @default.
- W3036553362 cites W2954978443 @default.
- W3036553362 cites W2962835968 @default.
- W3036553362 cites W2963070423 @default.
- W3036553362 cites W2963143631 @default.
- W3036553362 cites W2963178695 @default.
- W3036553362 cites W2963207607 @default.
- W3036553362 cites W2963384482 @default.
- W3036553362 cites W2963431851 @default.
- W3036553362 cites W2963542245 @default.
- W3036553362 cites W2963557656 @default.
- W3036553362 cites W2963564844 @default.
- W3036553362 cites W2963612069 @default.
- W3036553362 cites W2963629172 @default.
- W3036553362 cites W2963771536 @default.
- W3036553362 cites W2963857521 @default.
- W3036553362 cites W2963920068 @default.
- W3036553362 cites W2964153729 @default.
- W3036553362 cites W2964253222 @default.
- W3036553362 cites W2970504098 @default.
- W3036553362 cites W2979170146 @default.
- W3036553362 cites W2995554640 @default.
- W3036553362 cites W2996230445 @default.
- W3036553362 cites W3007305010 @default.
- W3036553362 cites W3015625436 @default.
- W3036553362 cites W3034214559 @default.
- W3036553362 cites W3080297477 @default.
- W3036553362 cites W3119704641 @default.
- W3036553362 hasPublicationYear "2020" @default.
- W3036553362 type Work @default.
- W3036553362 sameAs 3036553362 @default.
- W3036553362 citedByCount "0" @default.
- W3036553362 crossrefType "posted-content" @default.
- W3036553362 hasAuthorship W3036553362A5002144478 @default.
- W3036553362 hasAuthorship W3036553362A5053352602 @default.
- W3036553362 hasAuthorship W3036553362A5061545468 @default.
- W3036553362 hasAuthorship W3036553362A5075756968 @default.
- W3036553362 hasConcept C104317684 @default.
- W3036553362 hasConcept C108583219 @default.
- W3036553362 hasConcept C119857082 @default.
- W3036553362 hasConcept C154945302 @default.
- W3036553362 hasConcept C180932941 @default.
- W3036553362 hasConcept C185592680 @default.
- W3036553362 hasConcept C190502265 @default.
- W3036553362 hasConcept C37736160 @default.
- W3036553362 hasConcept C38652104 @default.
- W3036553362 hasConcept C41008148 @default.
- W3036553362 hasConcept C41065033 @default.
- W3036553362 hasConcept C55493867 @default.
- W3036553362 hasConcept C63479239 @default.
- W3036553362 hasConcept C94966114 @default.
- W3036553362 hasConceptScore W3036553362C104317684 @default.
- W3036553362 hasConceptScore W3036553362C108583219 @default.
- W3036553362 hasConceptScore W3036553362C119857082 @default.
- W3036553362 hasConceptScore W3036553362C154945302 @default.
- W3036553362 hasConceptScore W3036553362C180932941 @default.
- W3036553362 hasConceptScore W3036553362C185592680 @default.
- W3036553362 hasConceptScore W3036553362C190502265 @default.
- W3036553362 hasConceptScore W3036553362C37736160 @default.
- W3036553362 hasConceptScore W3036553362C38652104 @default.
- W3036553362 hasConceptScore W3036553362C41008148 @default.
- W3036553362 hasConceptScore W3036553362C41065033 @default.
- W3036553362 hasConceptScore W3036553362C55493867 @default.
- W3036553362 hasConceptScore W3036553362C63479239 @default.
- W3036553362 hasConceptScore W3036553362C94966114 @default.
- W3036553362 hasOpenAccess W3036553362 @default.
- W3036553362 hasRelatedWork W2738001131 @default.
- W3036553362 hasRelatedWork W2765725061 @default.
- W3036553362 hasRelatedWork W2774644650 @default.
- W3036553362 hasRelatedWork W2797455600 @default.
- W3036553362 hasRelatedWork W2897429143 @default.
- W3036553362 hasRelatedWork W2938579963 @default.
- W3036553362 hasRelatedWork W2944318064 @default.
- W3036553362 hasRelatedWork W2945893265 @default.
- W3036553362 hasRelatedWork W2962595205 @default.