Show simple item record

dc.contributor.authorIlyas, Andrew.
dc.contributor.authorEngstrom, Logan G.
dc.contributor.authorMadry, Aleksander
dc.date.accessioned2021-02-09T17:40:30Z
dc.date.available2021-02-09T17:40:30Z
dc.date.issued2019-03
dc.date.submitted2018-07
dc.identifier.urihttps://hdl.handle.net/1721.1/129721
dc.description.abstractWe study the problem of generating adversarial examples in a black-box setting in which only loss-oracle access to a model is available. We introduce a framework that conceptually unifies much of the existing work on black-box attacks, and we demonstrate that the current state-of-the-art methods are optimal in a natural sense. Despite this optimality, we show how to improve black-box attacks by bringing a new element into the problem: gradient priors. We give a bandit optimization-based algorithm that allows us to seamlessly integrate any such priors, and we explicitly identify and incorporate two examples. The resulting methods use two to four times fewer queries and fail two to five times less than the current state-of-the-art.en_US
dc.description.sponsorshipNSF (Grants CNS-10413920, CCF-1553428, CNS-1815221)en_US
dc.language.isoen
dc.publisherarXiven_US
dc.relation.isversionofhttps://openreview.net/forum?id=BkMiWhR5K7en_US
dc.rightsCreative Commons Attribution-Noncommercial-Share Alikeen_US
dc.rights.urihttp://creativecommons.org/licenses/by-nc-sa/4.0/en_US
dc.sourcearXiven_US
dc.titlePrior convictions: Black-box adversarial attacks with bandits and priorsen_US
dc.typeArticleen_US
dc.identifier.citationIlyas, Andrew et al. "Prior convictions: Black-box adversarial attacks with bandits and priors." 7th International Conference on Learning Representations (March 2019); © 7th International Conference on Learning Representations, ICLR 2019. All Rights Reserved.en_US
dc.contributor.departmentMIT-IBM Watson AI Laben_US
dc.relation.journal7th International Conference on Learning Representationsen_US
dc.eprint.versionAuthor's final manuscripten_US
dc.type.urihttp://purl.org/eprint/type/ConferencePaperen_US
eprint.statushttp://purl.org/eprint/status/NonPeerRevieweden_US
dc.date.updated2021-02-05T18:17:33Z
dspace.orderedauthorsIlyas, A; Engstrom, L; Madry, Aen_US
dspace.date.submission2021-02-05T18:17:35Z
mit.licenseOPEN_ACCESS_POLICY
mit.metadata.statusComplete


Files in this item

Thumbnail

This item appears in the following Collection(s)

Show simple item record