{"id":"https://openalex.org/W3196017234","doi":"https://doi.org/10.1109/icip42928.2021.9506464","title":"Robust Decision-Based Black-Box Adversarial Attack via Coarse-To-Fine Random Search","display_name":"Robust Decision-Based Black-Box Adversarial Attack via Coarse-To-Fine Random Search","publication_year":2021,"publication_date":"2021-08-23","ids":{"openalex":"https://openalex.org/W3196017234","doi":"https://doi.org/10.1109/icip42928.2021.9506464","mag":"3196017234"},"language":"en","primary_location":{"id":"doi:10.1109/icip42928.2021.9506464","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icip42928.2021.9506464","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 IEEE International Conference on Image Processing (ICIP)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5017330796","display_name":"Byeong Cheon Kim","orcid":null},"institutions":[{"id":"https://openalex.org/I157485424","display_name":"Korea Advanced Institute of Science and Technology","ror":"https://ror.org/05apxxy63","country_code":"KR","type":"education","lineage":["https://openalex.org/I157485424"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Byeong Cheon Kim","raw_affiliation_strings":["School of Electrical Engineering,Image and Video Systems Lab,KAIST,South Korea","Image and Video Systems Lab, School of Electrical Engineering, KAIST, South Korea"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Electrical Engineering,Image and Video Systems Lab,KAIST,South Korea","institution_ids":["https://openalex.org/I157485424"]},{"raw_affiliation_string":"Image and Video Systems Lab, School of Electrical Engineering, KAIST, South Korea","institution_ids":["https://openalex.org/I157485424"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5067319464","display_name":"Youngjoon Yu","orcid":"https://orcid.org/0000-0002-3188-2080"},"institutions":[{"id":"https://openalex.org/I157485424","display_name":"Korea Advanced Institute of Science and Technology","ror":"https://ror.org/05apxxy63","country_code":"KR","type":"education","lineage":["https://openalex.org/I157485424"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Youngjoon Yu","raw_affiliation_strings":["School of Electrical Engineering,Image and Video Systems Lab,KAIST,South Korea","Image and Video Systems Lab, School of Electrical Engineering, KAIST, South Korea"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Electrical Engineering,Image and Video Systems Lab,KAIST,South Korea","institution_ids":["https://openalex.org/I157485424"]},{"raw_affiliation_string":"Image and Video Systems Lab, School of Electrical Engineering, KAIST, South Korea","institution_ids":["https://openalex.org/I157485424"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5038798134","display_name":"Yong Man Ro","orcid":"https://orcid.org/0000-0001-5306-6853"},"institutions":[{"id":"https://openalex.org/I157485424","display_name":"Korea Advanced Institute of Science and Technology","ror":"https://ror.org/05apxxy63","country_code":"KR","type":"education","lineage":["https://openalex.org/I157485424"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Yong Man Ro","raw_affiliation_strings":["School of Electrical Engineering,Image and Video Systems Lab,KAIST,South Korea","Image and Video Systems Lab, School of Electrical Engineering, KAIST, South Korea"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Electrical Engineering,Image and Video Systems Lab,KAIST,South Korea","institution_ids":["https://openalex.org/I157485424"]},{"raw_affiliation_string":"Image and Video Systems Lab, School of Electrical Engineering, KAIST, South Korea","institution_ids":["https://openalex.org/I157485424"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.2799,"has_fulltext":false,"cited_by_count":2,"citation_normalized_percentile":{"value":0.64179636,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":94},"biblio":{"volume":null,"issue":null,"first_page":"3048","last_page":"3052"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9904999732971191,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11307","display_name":"Domain Adaptation and Few-Shot Learning","score":0.9746999740600586,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7468054890632629},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7457478642463684},{"id":"https://openalex.org/keywords/black-box","display_name":"Black box","score":0.6530331373214722},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.6512283682823181},{"id":"https://openalex.org/keywords/adversary","display_name":"Adversary","score":0.571074366569519},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.5611124038696289},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5559214353561401},{"id":"https://openalex.org/keywords/stochastic-gradient-descent","display_name":"Stochastic gradient descent","score":0.5548405647277832},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.5440182089805603},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.48205575346946716},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.46059808135032654},{"id":"https://openalex.org/keywords/adversarial-machine-learning","display_name":"Adversarial machine learning","score":0.4592137336730957},{"id":"https://openalex.org/keywords/obfuscation","display_name":"Obfuscation","score":0.4551101624965668},{"id":"https://openalex.org/keywords/random-forest","display_name":"Random forest","score":0.43243715167045593},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.4274735152721405},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.3375455141067505},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.23452526330947876}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7468054890632629},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7457478642463684},{"id":"https://openalex.org/C94966114","wikidata":"https://www.wikidata.org/wiki/Q29256","display_name":"Black box","level":2,"score":0.6530331373214722},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.6512283682823181},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.571074366569519},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5611124038696289},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5559214353561401},{"id":"https://openalex.org/C206688291","wikidata":"https://www.wikidata.org/wiki/Q7617819","display_name":"Stochastic gradient descent","level":3,"score":0.5548405647277832},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.5440182089805603},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.48205575346946716},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.46059808135032654},{"id":"https://openalex.org/C2778403875","wikidata":"https://www.wikidata.org/wiki/Q20312394","display_name":"Adversarial machine learning","level":3,"score":0.4592137336730957},{"id":"https://openalex.org/C40305131","wikidata":"https://www.wikidata.org/wiki/Q2616305","display_name":"Obfuscation","level":2,"score":0.4551101624965668},{"id":"https://openalex.org/C169258074","wikidata":"https://www.wikidata.org/wiki/Q245748","display_name":"Random forest","level":2,"score":0.43243715167045593},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.4274735152721405},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.3375455141067505},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.23452526330947876},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/icip42928.2021.9506464","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icip42928.2021.9506464","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 IEEE International Conference on Image Processing (ICIP)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.800000011920929,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":40,"referenced_works":["https://openalex.org/W1945616565","https://openalex.org/W2183341477","https://openalex.org/W2194775991","https://openalex.org/W2570685808","https://openalex.org/W2603766943","https://openalex.org/W2746600820","https://openalex.org/W2950782995","https://openalex.org/W2962711307","https://openalex.org/W2963062382","https://openalex.org/W2963070423","https://openalex.org/W2963143631","https://openalex.org/W2963920068","https://openalex.org/W2964137095","https://openalex.org/W2964346747","https://openalex.org/W2986078788","https://openalex.org/W2995387004","https://openalex.org/W2997532515","https://openalex.org/W3026118066","https://openalex.org/W3034214559","https://openalex.org/W3106412272","https://openalex.org/W3107235539","https://openalex.org/W3159883085","https://openalex.org/W3160407050","https://openalex.org/W4288103143","https://openalex.org/W4300725094","https://openalex.org/W6640425456","https://openalex.org/W6713132643","https://openalex.org/W6725195833","https://openalex.org/W6731927902","https://openalex.org/W6746402973","https://openalex.org/W6746608116","https://openalex.org/W6748475379","https://openalex.org/W6750404860","https://openalex.org/W6752985256","https://openalex.org/W6759580348","https://openalex.org/W6767666165","https://openalex.org/W6769694023","https://openalex.org/W6770674618","https://openalex.org/W6771902712","https://openalex.org/W6777387093"],"related_works":["https://openalex.org/W2963115223","https://openalex.org/W3034953030","https://openalex.org/W2952919291","https://openalex.org/W2603766943","https://openalex.org/W2951807304","https://openalex.org/W4297309777","https://openalex.org/W4379255972","https://openalex.org/W4383955378","https://openalex.org/W3102139703","https://openalex.org/W3196017234"],"abstract_inverted_index":{"Many":[0],"studies":[1,63],"on":[2,38,64,92],"reducing":[3],"the":[4,15,22,44,51],"adversarial":[5,28],"vulnerability":[6],"of":[7,17,25,71],"deep":[8],"neural":[9],"networks":[10],"have":[11,30,36,47,67,77],"been":[12,31],"published":[13],"in":[14,59],"field":[16],"machine":[18],"learning.":[19],"To":[20],"evaluate":[21],"actual":[23],"robustness":[24],"networks,":[26],"various":[27],"attacks":[29,66,76,99],"proposed.":[32],"Most":[33],"previous":[34],"works":[35],"focused":[37],"white-box":[39],"settings":[40],"which":[41],"assume":[42],"that":[43],"adversary":[45],"can":[46],"full":[48],"access":[49],"to":[50],"target":[52],"models.":[53],"Since":[54],"they":[55],"are":[56,100],"not":[57],"practical":[58],"real-world":[60],"situations,":[61],"recent":[62],"black-box":[65,75,117],"received":[68],"a":[69,83,113,128],"lot":[70],"attention.":[72],"However,":[73],"existing":[74],"critical":[78],"limitations,":[79],"such":[80],"as":[81],"yielding":[82],"low":[84],"attack":[85,118],"success":[86],"rate":[87],"or":[88],"relying":[89],"too":[90],"much":[91],"gradient":[93,106,137],"estimation":[94],"and":[95,131,144],"decision":[96],"boundaries.":[97],"Those":[98],"ineffective":[101],"against":[102,134],"weak":[103],"defenses":[104,135],"using":[105,119,136],"obfuscation.":[107,138],"In":[108],"this":[109],"paper,":[110],"we":[111],"propose":[112],"novel":[114],"gradient-free":[115],"decision-based":[116],"random":[120],"search":[121],"optimization.":[122],"The":[123],"proposed":[124],"method":[125],"only":[126],"needs":[127],"hard-label":[129],"(decision-based)":[130],"is":[132],"effective":[133],"Experimental":[139],"results":[140],"validate":[141],"its":[142],"query-efficiency":[143],"improved":[145],"L":[146],"<inf":[147],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[148],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">2</inf>":[149],"distance.":[150]},"counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2022,"cited_by_count":1}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
