arXiv Machine Learning

Low-Cost Hard-Label Adversarial Attack with Theoretical Foundations

arXiv:2601. 14300v4 Announce Type: replace Abstract: Hard-label black-box attacks, relying solely on top-1 predictions, represent one of the most challenging yet practically threat models.