Papers
Topics
Authors
Recent
Gemini 2.5 Flash
Gemini 2.5 Flash
97 tokens/sec
GPT-4o
53 tokens/sec
Gemini 2.5 Pro Pro
43 tokens/sec
o3 Pro
4 tokens/sec
GPT-4.1 Pro
47 tokens/sec
DeepSeek R1 via Azure Pro
28 tokens/sec
2000 character limit reached

Hessian-Aware Zeroth-Order Optimization for Black-Box Adversarial Attack (1812.11377v2)

Published 29 Dec 2018 in cs.LG, cs.CR, and stat.ML

Abstract: Zeroth-order optimization is an important research topic in machine learning. In recent years, it has become a key tool in black-box adversarial attack to neural network based image classifiers. However, existing zeroth-order optimization algorithms rarely extract second-order information of the model function. In this paper, we utilize the second-order information of the objective function and propose a novel \textit{Hessian-aware zeroth-order algorithm} called \texttt{ZO-HessAware}. Our theoretical result shows that \texttt{ZO-HessAware} has an improved zeroth-order convergence rate and query complexity under structured Hessian approximation, where we propose a few approximation methods for estimating Hessian. Our empirical studies on the black-box adversarial attack problem validate that our algorithm can achieve improved success rates with a lower query complexity.

User Edit Pencil Streamline Icon: https://streamlinehq.com
Authors (5)
  1. Haishan Ye (41 papers)
  2. Zhichao Huang (17 papers)
  3. Cong Fang (36 papers)
  4. Chris Junchi Li (25 papers)
  5. Tong Zhang (570 papers)
Citations (41)

Summary

We haven't generated a summary for this paper yet.