{"id":"https://openalex.org/W4394896798","doi":"https://doi.org/10.1109/tifs.2024.3390609","title":"Boosting Black-Box Attack to Deep Neural Networks With Conditional Diffusion Models","display_name":"Boosting Black-Box Attack to Deep Neural Networks With Conditional Diffusion Models","publication_year":2024,"publication_date":"2024-01-01","ids":{"openalex":"https://openalex.org/W4394896798","doi":"https://doi.org/10.1109/tifs.2024.3390609"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2024.3390609","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3390609","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5028872220","display_name":"Renyang Liu","orcid":"https://orcid.org/0000-0002-7121-1257"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":true,"raw_author_name":"Renyang Liu","raw_affiliation_strings":["School of Computer Science and Engineering, Nanyang Technological University, Jurong West, Singapore"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, Nanyang Technological University, Jurong West, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5051349066","display_name":"Wei Zhou","orcid":"https://orcid.org/0000-0002-5881-9436"},"institutions":[{"id":"https://openalex.org/I189210763","display_name":"Yunnan University","ror":"https://ror.org/0040axw97","country_code":"CN","type":"education","lineage":["https://openalex.org/I189210763"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wei Zhou","raw_affiliation_strings":["School of Software, and the Engineering Research Center of Cyberspace, Yunnan University, Kunming, China"],"affiliations":[{"raw_affiliation_string":"School of Software, and the Engineering Research Center of Cyberspace, Yunnan University, Kunming, China","institution_ids":["https://openalex.org/I189210763"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101591101","display_name":"Tianwei Zhang","orcid":"https://orcid.org/0000-0001-6595-6650"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Tianwei Zhang","raw_affiliation_strings":["School of Computer Science and Engineering, Nanyang Technological University, Jurong West, Singapore"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, Nanyang Technological University, Jurong West, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5090278564","display_name":"Kangjie Chen","orcid":"https://orcid.org/0000-0001-5099-7054"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Kangjie Chen","raw_affiliation_strings":["School of Computer Science and Engineering, Nanyang Technological University, Jurong West, Singapore"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, Nanyang Technological University, Jurong West, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5071321132","display_name":"Jun Zhao","orcid":"https://orcid.org/0000-0002-3004-7091"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Jun Zhao","raw_affiliation_strings":["School of Computer Science and Engineering, Nanyang Technological University, Jurong West, Singapore"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, Nanyang Technological University, Jurong West, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5101720092","display_name":"Kwok\u2010Yan Lam","orcid":null},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Kwok-Yan Lam","raw_affiliation_strings":["School of Computer Science and Engineering, Nanyang Technological University, Jurong West, Singapore"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, Nanyang Technological University, Jurong West, Singapore","institution_ids":["https://openalex.org/I172675005"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5028872220"],"corresponding_institution_ids":["https://openalex.org/I172675005"],"apc_list":null,"apc_paid":null,"fwci":5.1226,"has_fulltext":false,"cited_by_count":15,"citation_normalized_percentile":{"value":0.95813514,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":94,"max":100},"biblio":{"volume":"19","issue":null,"first_page":"5207","last_page":"5219"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11242","display_name":"Nuclear Materials and Properties","score":0.9448999762535095,"subfield":{"id":"https://openalex.org/subfields/2505","display_name":"Materials Chemistry"},"field":{"id":"https://openalex.org/fields/25","display_name":"Materials Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9440000057220459,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7973907589912415},{"id":"https://openalex.org/keywords/black-box","display_name":"Black box","score":0.6616026759147644},{"id":"https://openalex.org/keywords/benchmark","display_name":"Benchmark (surveying)","score":0.6172395944595337},{"id":"https://openalex.org/keywords/transformation","display_name":"Transformation (genetics)","score":0.49054068326950073},{"id":"https://openalex.org/keywords/boosting","display_name":"Boosting (machine learning)","score":0.4771972596645355},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.4580672085285187},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.43179360032081604},{"id":"https://openalex.org/keywords/probabilistic-logic","display_name":"Probabilistic logic","score":0.4263232350349426},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.35720396041870117},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.35685408115386963},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.3218112587928772}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7973907589912415},{"id":"https://openalex.org/C94966114","wikidata":"https://www.wikidata.org/wiki/Q29256","display_name":"Black box","level":2,"score":0.6616026759147644},{"id":"https://openalex.org/C185798385","wikidata":"https://www.wikidata.org/wiki/Q1161707","display_name":"Benchmark (surveying)","level":2,"score":0.6172395944595337},{"id":"https://openalex.org/C204241405","wikidata":"https://www.wikidata.org/wiki/Q461499","display_name":"Transformation (genetics)","level":3,"score":0.49054068326950073},{"id":"https://openalex.org/C46686674","wikidata":"https://www.wikidata.org/wiki/Q466303","display_name":"Boosting (machine learning)","level":2,"score":0.4771972596645355},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.4580672085285187},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.43179360032081604},{"id":"https://openalex.org/C49937458","wikidata":"https://www.wikidata.org/wiki/Q2599292","display_name":"Probabilistic logic","level":2,"score":0.4263232350349426},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.35720396041870117},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.35685408115386963},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.3218112587928772},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.0},{"id":"https://openalex.org/C13280743","wikidata":"https://www.wikidata.org/wiki/Q131089","display_name":"Geodesy","level":1,"score":0.0},{"id":"https://openalex.org/C205649164","wikidata":"https://www.wikidata.org/wiki/Q1071","display_name":"Geography","level":0,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tifs.2024.3390609","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3390609","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},{"id":"pmh:oai:dr.ntu.edu.sg:10356/179289","is_oa":false,"landing_page_url":"https://doi.org/10.1109/TIFS.2024.3390609","pdf_url":null,"source":{"id":"https://openalex.org/S4306402609","display_name":"DR-NTU (Nanyang Technological University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I172675005","host_organization_name":"Nanyang Technological University","host_organization_lineage":["https://openalex.org/I172675005"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Journal Article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2408903403","display_name":null,"funder_award_id":"62101480","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G2703468498","display_name":null,"funder_award_id":"62162067","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":69,"referenced_works":["https://openalex.org/W1834627138","https://openalex.org/W1861492603","https://openalex.org/W1901129140","https://openalex.org/W2031489346","https://openalex.org/W2108598243","https://openalex.org/W2166049352","https://openalex.org/W2183341477","https://openalex.org/W2194775991","https://openalex.org/W2603766943","https://openalex.org/W2607219512","https://openalex.org/W2693668331","https://openalex.org/W2732026016","https://openalex.org/W2746600820","https://openalex.org/W2774644650","https://openalex.org/W2894842463","https://openalex.org/W2944842185","https://openalex.org/W2962933288","https://openalex.org/W2963446712","https://openalex.org/W2963857521","https://openalex.org/W2964205597","https://openalex.org/W2994027480","https://openalex.org/W2998347911","https://openalex.org/W3018757597","https://openalex.org/W3080297477","https://openalex.org/W3083269515","https://openalex.org/W3100149641","https://openalex.org/W3102720581","https://openalex.org/W3106412272","https://openalex.org/W3118608800","https://openalex.org/W3170514715","https://openalex.org/W3191805365","https://openalex.org/W3208647751","https://openalex.org/W3212516020","https://openalex.org/W4214870408","https://openalex.org/W4224950625","https://openalex.org/W4225859735","https://openalex.org/W4281630895","https://openalex.org/W4293846201","https://openalex.org/W4295136046","https://openalex.org/W4312513141","https://openalex.org/W4312933868","https://openalex.org/W4313387422","https://openalex.org/W4316660635","https://openalex.org/W4320736485","https://openalex.org/W4380032277","https://openalex.org/W4385757664","https://openalex.org/W4386299120","https://openalex.org/W6620707391","https://openalex.org/W6637162671","https://openalex.org/W6637373629","https://openalex.org/W6640425456","https://openalex.org/W6677919164","https://openalex.org/W6746608116","https://openalex.org/W6752985256","https://openalex.org/W6753044988","https://openalex.org/W6755256504","https://openalex.org/W6763091886","https://openalex.org/W6764550947","https://openalex.org/W6767666165","https://openalex.org/W6769581535","https://openalex.org/W6771543752","https://openalex.org/W6779823529","https://openalex.org/W6780186808","https://openalex.org/W6780986092","https://openalex.org/W6809825888","https://openalex.org/W6811424244","https://openalex.org/W6838695150","https://openalex.org/W6838931670","https://openalex.org/W6848464667"],"related_works":["https://openalex.org/W2125652721","https://openalex.org/W1540371141","https://openalex.org/W4231274751","https://openalex.org/W1549363203","https://openalex.org/W2378211422","https://openalex.org/W2154063878","https://openalex.org/W2556012038","https://openalex.org/W4385437088","https://openalex.org/W4377865163","https://openalex.org/W3184396788"],"abstract_inverted_index":{"Existing":[0],"black-box":[1,50,190],"attacks":[2,20,191,232],"have":[3],"demonstrated":[4],"promising":[5],"potential":[6],"in":[7,40,209],"creating":[8],"adversarial":[9],"examples":[10,89],"(AE)":[11],"to":[12,22,58,75,161,172,204],"deceive":[13],"deep":[14],"learning":[15],"models.":[16],"Most":[17],"of":[18,33,63,72,79,139,168,182,207,245],"these":[19],"need":[21],"handle":[23],"a":[24,30,48,83,110,205],"vast":[25],"optimization":[26],"space":[27],"and":[28,90,103,163,180,236],"require":[29],"large":[31],"number":[32,138],"queries,":[34],"hence":[35],"exhibiting":[36],"limited":[37],"practical":[38],"impacts":[39],"real-world":[41],"scenarios.":[42],"In":[43],"this":[44],"paper,":[45],"we":[46,120],"propose":[47],"novel":[49],"attack":[51,227,238],"strategy,":[52],"Conditional":[53],"Diffusion":[54,147],"Model":[55,149],"Attack":[56],"(CDMA),":[57],"improve":[59],"the":[60,77,114,129,137,144,151,156,165,178,201,212,242],"query":[61,202,213],"efficiency":[62,181],"generating":[64],"AEs":[65,93,123],"under":[66],"query-limited":[67],"situations.":[68],"The":[69],"key":[70],"insight":[71],"CDMA":[73,142,183,198,222],"is":[74,215],"formulate":[76],"task":[78],"AE":[80],"synthesis":[81],"as":[82,97,150],"distribution":[84],"transformation":[85,157],"problem,":[86],"i.e.,":[87],"benign":[88],"their":[91],"corresponding":[92],"can":[94,104,134,154,199,223],"be":[95],"regarded":[96],"coming":[98],"from":[99,106,158],"two":[100],"distinctive":[101],"distributions":[102],"transform":[105,127],"each":[107],"other":[108],"with":[109,124,187,241],"particular":[111],"converter.":[112],"Unlike":[113],"conventional":[115],"<italic":[116],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[117],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">query-and-optimization</i>":[118],"approach,":[119],"generate":[121],"eligible":[122],"direct":[125],"conditional":[126,145],"using":[128],"aforementioned":[130],"data":[131],"converter,":[132,152],"which":[133,153],"significantly":[135],"reduce":[136,200],"queries":[140],"needed.":[141],"adopts":[143],"Denoising":[146],"Probabilistic":[148],"learn":[155],"clean":[159],"samples":[160],"AEs,":[162],"ensure":[164],"smooth":[166],"development":[167],"perturbed":[169],"noise":[170,243],"resistant":[171],"various":[173],"defense":[174],"strategies.":[175],"We":[176,218],"demonstrate":[177],"effectiveness":[179],"by":[184],"comparing":[185],"it":[186],"nine":[188],"state-of-the-art":[189],"across":[192],"three":[193],"benchmark":[194],"datasets.":[195],"On":[196],"average,":[197],"count":[203,214],"handful":[206],"times;":[208],"most":[210],"cases,":[211],"only":[216],"ONE.":[217],"also":[219],"show":[220],"that":[221],"obtain":[224],">":[225],"99%":[226],"success":[228],"rate":[229],"for":[230],"untargeted":[231],"over":[233,239],"all":[234],"datasets":[235],"targeted":[237],"CIFAR-10":[240],"budget":[244],"\u03f5":[246],"=":[247],"16.":[248]},"counts_by_year":[{"year":2026,"cited_by_count":3},{"year":2025,"cited_by_count":10},{"year":2024,"cited_by_count":2}],"updated_date":"2026-04-09T08:11:56.329763","created_date":"2025-10-10T00:00:00"}
