CAAD 2018: Powerful None-Access Black-Box Attack Based on Adversarial Transformation Network

Xiaoyi Dong,Weiming Zhang,Nenghai Yu
DOI: https://doi.org/10.48550/arXiv.1811.01225
2018-11-03
Abstract:In this paper, we propose an improvement of Adversarial Transformation Networks(ATN) to generate adversarial examples, which can fool white-box models and black-box models with a state of the art performance and won the 2rd place in the non-target task in CAAD 2018.
Machine Learning
What problem does this paper attempt to address?