Scaling up the Randomized Gradient-Free Adversarial Attack Reveals Overestimation of Robustness Using Established Attacks
Crossref DOI link: https://doi.org/10.1007/s11263-019-01213-0
Published Online: 2019-10-03
Published Print: 2020-04
Update policy: https://doi.org/10.1007/springer_crossmark_policy
Croce, Francesco
Rauber, Jonas
Hein, Matthias
Text and Data Mining valid from 2019-10-03
Version of Record valid from 2019-10-03
Article History
Received: 3 March 2019
Accepted: 12 August 2019
First Online: 3 October 2019