Scaling up the Randomized Gradient-Free Adversarial Attack Reveals Overestimation of Robustness Using Established Attacks

Francesco Croce, Jonas Rauber, Matthias Hein 0001. Scaling up the Randomized Gradient-Free Adversarial Attack Reveals Overestimation of Robustness Using Established Attacks. International Journal of Computer Vision, 128(4):1028-1046, 2020. [doi]

@article{CroceRH20,
  title = {Scaling up the Randomized Gradient-Free Adversarial Attack Reveals Overestimation of Robustness Using Established Attacks},
  author = {Francesco Croce and Jonas Rauber and Matthias Hein 0001},
  year = {2020},
  doi = {10.1007/s11263-019-01213-0},
  url = {https://doi.org/10.1007/s11263-019-01213-0},
  researchr = {https://researchr.org/publication/CroceRH20},
  cites = {0},
  citedby = {0},
  journal = {International Journal of Computer Vision},
  volume = {128},
  number = {4},
  pages = {1028-1046},
}