{"id":"https://openalex.org/W4414882256","doi":"https://doi.org/10.48550/arxiv.2507.17577","title":"Boosting Ray Search Procedure of Hard-label Attacks with Transfer-based Priors","display_name":"Boosting Ray Search Procedure of Hard-label Attacks with Transfer-based Priors","publication_year":2025,"publication_date":"2025-07-23","ids":{"openalex":"https://openalex.org/W4414882256","doi":"https://doi.org/10.48550/arxiv.2507.17577"},"language":"en","primary_location":{"id":"pmh:oai:arXiv.org:2507.17577","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2507.17577","pdf_url":"https://arxiv.org/pdf/2507.17577","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"type":"preprint","indexed_in":["arxiv","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2507.17577","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100652421","display_name":"Man Chen","orcid":"https://orcid.org/0009-0006-4599-7328"},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Ma, Chen","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5103868642","display_name":"Xinjie Xu","orcid":"https://orcid.org/0000-0002-5679-9750"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Xu, Xinjie","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102448472","display_name":"Shuyu Cheng","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Cheng, Shuyu","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5081889779","display_name":"Qi Xuan","orcid":"https://orcid.org/0000-0002-8186-9466"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Xuan, Qi","raw_affiliation_strings":[],"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5100652421"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9258999824523926,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9258999824523926,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/prior-probability","display_name":"Prior probability","score":0.7285000085830688},{"id":"https://openalex.org/keywords/subspace-topology","display_name":"Subspace topology","score":0.6916000247001648},{"id":"https://openalex.org/keywords/estimator","display_name":"Estimator","score":0.6017000079154968},{"id":"https://openalex.org/keywords/gradient-descent","display_name":"Gradient descent","score":0.4147999882698059},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.41100001335144043},{"id":"https://openalex.org/keywords/boosting","display_name":"Boosting (machine learning)","score":0.3912999927997589},{"id":"https://openalex.org/keywords/binary-number","display_name":"Binary number","score":0.3727000057697296},{"id":"https://openalex.org/keywords/function","display_name":"Function (biology)","score":0.3456000089645386}],"concepts":[{"id":"https://openalex.org/C177769412","wikidata":"https://www.wikidata.org/wiki/Q278090","display_name":"Prior probability","level":3,"score":0.7285000085830688},{"id":"https://openalex.org/C32834561","wikidata":"https://www.wikidata.org/wiki/Q660730","display_name":"Subspace topology","level":2,"score":0.6916000247001648},{"id":"https://openalex.org/C185429906","wikidata":"https://www.wikidata.org/wiki/Q1130160","display_name":"Estimator","level":2,"score":0.6017000079154968},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.5059000253677368},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.4634000062942505},{"id":"https://openalex.org/C153258448","wikidata":"https://www.wikidata.org/wiki/Q1199743","display_name":"Gradient descent","level":3,"score":0.4147999882698059},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.41449999809265137},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.41110000014305115},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.41100001335144043},{"id":"https://openalex.org/C126255220","wikidata":"https://www.wikidata.org/wiki/Q141495","display_name":"Mathematical optimization","level":1,"score":0.4018000066280365},{"id":"https://openalex.org/C46686674","wikidata":"https://www.wikidata.org/wiki/Q466303","display_name":"Boosting (machine learning)","level":2,"score":0.3912999927997589},{"id":"https://openalex.org/C48372109","wikidata":"https://www.wikidata.org/wiki/Q3913","display_name":"Binary number","level":2,"score":0.3727000057697296},{"id":"https://openalex.org/C14036430","wikidata":"https://www.wikidata.org/wiki/Q3736076","display_name":"Function (biology)","level":2,"score":0.3456000089645386},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.328000009059906},{"id":"https://openalex.org/C57493831","wikidata":"https://www.wikidata.org/wiki/Q3134666","display_name":"Projection (relational algebra)","level":2,"score":0.32690000534057617},{"id":"https://openalex.org/C2777036070","wikidata":"https://www.wikidata.org/wiki/Q18393452","display_name":"Random projection","level":2,"score":0.2924000024795532},{"id":"https://openalex.org/C8642999","wikidata":"https://www.wikidata.org/wiki/Q4171168","display_name":"Hyperparameter","level":2,"score":0.2694999873638153},{"id":"https://openalex.org/C115680565","wikidata":"https://www.wikidata.org/wiki/Q5977448","display_name":"Gradient method","level":2,"score":0.26930001378059387},{"id":"https://openalex.org/C167928553","wikidata":"https://www.wikidata.org/wiki/Q1376021","display_name":"Estimation theory","level":2,"score":0.25699999928474426},{"id":"https://openalex.org/C137836250","wikidata":"https://www.wikidata.org/wiki/Q984063","display_name":"Optimization problem","level":2,"score":0.25119999051094055},{"id":"https://openalex.org/C125583679","wikidata":"https://www.wikidata.org/wiki/Q755673","display_name":"Search algorithm","level":2,"score":0.25099998712539673}],"mesh":[],"locations_count":2,"locations":[{"id":"pmh:oai:arXiv.org:2507.17577","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2507.17577","pdf_url":"https://arxiv.org/pdf/2507.17577","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},{"id":"doi:10.48550/arxiv.2507.17577","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2507.17577","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2507.17577","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2507.17577","pdf_url":"https://arxiv.org/pdf/2507.17577","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"One":[0,24],"of":[1,8,51,99,109,148,209],"the":[2,13,18,31,36,41,45,58,71,97,107,131,146,149,153,169,174,179,184,193],"most":[3],"practical":[4],"and":[5,113,126,137,159,178,182,195],"challenging":[6],"types":[7],"black-box":[9],"adversarial":[10,46],"attacks":[11],"is":[12,22,27,54,70],"hard-label":[14,59],"attack,":[15],"where":[16],"only":[17],"top-1":[19],"predicted":[20],"label":[21],"available.":[23],"effective":[25],"approach":[26,53,118,201],"to":[28,44,95,119],"search":[29,80,122],"for":[30],"optimal":[32],"ray":[33,121],"direction":[34],"from":[35,134],"benign":[37],"image":[38],"that":[39,55,199],"minimizes":[40],"$\\ell_p$-norm":[42],"distance":[43],"region.":[47],"The":[48,66],"unique":[49],"advantage":[50],"this":[52,102,110],"it":[56],"transforms":[57],"attack":[60],"into":[61],"a":[62,82,89,115,163],"continuous":[63],"optimization":[64],"problem.":[65],"objective":[67],"function":[68],"value":[69],"ray's":[72],"radius,":[73],"which":[74],"can":[75],"be":[76],"obtained":[77,175],"via":[78],"binary":[79],"at":[81],"high":[83],"query":[84,210],"cost.":[85],"Existing":[86],"methods":[87,206],"use":[88],"\"sign":[90],"trick\"":[91],"in":[92,162,207],"gradient":[93,111,139,151,176],"estimation":[94,112],"reduce":[96],"number":[98],"queries.":[100],"In":[101],"paper,":[103],"we":[104,129],"theoretically":[105,125,167],"analyze":[106],"quality":[108],"propose":[114],"novel":[116],"prior-guided":[117],"improve":[120],"efficiency":[123],"both":[124],"empirically.":[127],"Specifically,":[128],"utilize":[130],"transfer-based":[132],"priors":[133,158],"surrogate":[135],"models,":[136],"our":[138,200],"estimators":[140,177],"appropriately":[141],"integrate":[142],"them":[143],"by":[144,156,187],"approximating":[145],"projection":[147],"true":[150,180],"onto":[152],"subspace":[154],"spanned":[155],"these":[157],"random":[160],"directions,":[161],"query-efficient":[164],"manner.":[165],"We":[166],"derive":[168],"expected":[170],"cosine":[171],"similarities":[172],"between":[173],"gradient,":[181],"demonstrate":[183],"improvement":[185],"achieved":[186],"incorporating":[188],"priors.":[189],"Extensive":[190],"experiments":[191],"on":[192],"ImageNet":[194],"CIFAR-10":[196],"datasets":[197],"show":[198],"significantly":[202],"outperforms":[203],"11":[204],"state-of-the-art":[205],"terms":[208],"efficiency.":[211]},"counts_by_year":[],"updated_date":"2026-03-07T16:01:11.037858","created_date":"2025-10-10T00:00:00"}
