{"id":"https://openalex.org/W7117301243","doi":"https://doi.org/10.48550/arxiv.2512.21241","title":"Improving the Convergence Rate of Ray Search Optimization for Query-Efficient Hard-Label Attacks","display_name":"Improving the Convergence Rate of Ray Search Optimization for Query-Efficient Hard-Label Attacks","publication_year":2025,"publication_date":"2025-12-24","ids":{"openalex":"https://openalex.org/W7117301243","doi":"https://doi.org/10.48550/arxiv.2512.21241"},"language":null,"primary_location":{"id":"doi:10.48550/arxiv.2512.21241","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2512.21241","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.48550/arxiv.2512.21241","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5121320497","display_name":"Xinjie Xu","orcid":null},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Xu, Xinjie","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102448472","display_name":"Shuyu Cheng","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Cheng, Shuyu","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5121304385","display_name":"Dongwei Xu","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Xu, Dongwei","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5121312426","display_name":"Qi Xuan","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Xuan, Qi","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5121357032","display_name":"Chen Ma","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Ma, Chen","raw_affiliation_strings":[],"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5121320497"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9503999948501587,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9503999948501587,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11612","display_name":"Stochastic Gradient Optimization Techniques","score":0.007199999876320362,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.0052999998442828655,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/focus","display_name":"Focus (optics)","score":0.6434999704360962},{"id":"https://openalex.org/keywords/convergence","display_name":"Convergence (economics)","score":0.5615000128746033},{"id":"https://openalex.org/keywords/prior-probability","display_name":"Prior probability","score":0.5112000107765198},{"id":"https://openalex.org/keywords/perturbation","display_name":"Perturbation (astronomy)","score":0.44749999046325684},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.43059998750686646},{"id":"https://openalex.org/keywords/rate-of-convergence","display_name":"Rate of convergence","score":0.36469998955726624},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.3434999883174896}],"concepts":[{"id":"https://openalex.org/C192209626","wikidata":"https://www.wikidata.org/wiki/Q190909","display_name":"Focus (optics)","level":2,"score":0.6434999704360962},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5979999899864197},{"id":"https://openalex.org/C126255220","wikidata":"https://www.wikidata.org/wiki/Q141495","display_name":"Mathematical optimization","level":1,"score":0.5641000270843506},{"id":"https://openalex.org/C2777303404","wikidata":"https://www.wikidata.org/wiki/Q759757","display_name":"Convergence (economics)","level":2,"score":0.5615000128746033},{"id":"https://openalex.org/C177769412","wikidata":"https://www.wikidata.org/wiki/Q278090","display_name":"Prior probability","level":3,"score":0.5112000107765198},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.49540001153945923},{"id":"https://openalex.org/C177918212","wikidata":"https://www.wikidata.org/wiki/Q803623","display_name":"Perturbation (astronomy)","level":2,"score":0.44749999046325684},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.43059998750686646},{"id":"https://openalex.org/C57869625","wikidata":"https://www.wikidata.org/wiki/Q1783502","display_name":"Rate of convergence","level":3,"score":0.36469998955726624},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.3434999883174896},{"id":"https://openalex.org/C2777212361","wikidata":"https://www.wikidata.org/wiki/Q5127848","display_name":"Class (philosophy)","level":2,"score":0.32659998536109924},{"id":"https://openalex.org/C2776650193","wikidata":"https://www.wikidata.org/wiki/Q264661","display_name":"Obstacle","level":2,"score":0.3246000111103058},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.3239000141620636},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.3197999894618988},{"id":"https://openalex.org/C115680565","wikidata":"https://www.wikidata.org/wiki/Q5977448","display_name":"Gradient method","level":2,"score":0.31049999594688416},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.30869999527931213},{"id":"https://openalex.org/C13662910","wikidata":"https://www.wikidata.org/wiki/Q193139","display_name":"Trajectory","level":2,"score":0.3001999855041504},{"id":"https://openalex.org/C153258448","wikidata":"https://www.wikidata.org/wiki/Q1199743","display_name":"Gradient descent","level":3,"score":0.28450000286102295},{"id":"https://openalex.org/C99498987","wikidata":"https://www.wikidata.org/wiki/Q2210247","display_name":"Noise (video)","level":3,"score":0.2786000072956085},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.2669000029563904}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.48550/arxiv.2512.21241","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2512.21241","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"doi:10.48550/arxiv.2512.21241","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2512.21241","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"In":[0,24],"hard-label":[1],"black-box":[2],"adversarial":[3,56],"attacks,":[4],"where":[5],"only":[6],"the":[7,13,39,44,55,73],"top-1":[8],"predicted":[9],"label":[10],"is":[11,132],"accessible,":[12],"prohibitive":[14],"query":[15,155],"complexity":[16],"poses":[17],"a":[18,31,51,66,78,88],"major":[19],"obstacle":[20],"to":[21,49,77],"practical":[22],"deployment.":[23],"this":[25],"paper,":[26],"we":[27,64,113],"focus":[28],"on":[29,142],"optimizing":[30],"representative":[32],"class":[33],"of":[34,91,129],"attacks":[35],"that":[36,96,147],"search":[37],"for":[38],"optimal":[40],"ray":[41,80],"direction":[42,81],"yielding":[43],"minimum":[45],"$\\ell_2$-norm":[46],"perturbation":[47],"required":[48],"move":[50],"benign":[52],"image":[53],"into":[54,117],"region.":[57],"Inspired":[58],"by":[59,134],"Nesterov's":[60],"Accelerated":[61],"Gradient":[62],"(NAG),":[63],"propose":[65],"momentum-based":[67],"algorithm,":[68],"ARS-OPT,":[69],"which":[70],"proactively":[71],"estimates":[72],"gradient":[74,119],"with":[75,124],"respect":[76],"future":[79],"inferred":[82],"from":[83],"accumulated":[84],"momentum.":[85],"We":[86],"provide":[87],"theoretical":[89,135],"analysis":[90],"its":[92],"convergence":[93],"behavior,":[94],"showing":[95],"ARS-OPT":[97],"enables":[98],"more":[99,106],"accurate":[100],"directional":[101],"updates":[102],"and":[103,144],"achieves":[104],"faster,":[105],"stable":[107],"optimization.":[108],"To":[109],"further":[110],"accelerate":[111],"convergence,":[112],"incorporate":[114],"surrogate-model":[115],"priors":[116],"ARS-OPT's":[118],"estimation,":[120],"resulting":[121],"in":[122,154],"PARS-OPT":[123],"enhanced":[125],"performance.":[126],"The":[127],"superiority":[128],"our":[130,148],"approach":[131],"supported":[133],"guarantees":[136],"under":[137],"standard":[138],"assumptions.":[139],"Extensive":[140],"experiments":[141],"ImageNet":[143],"CIFAR-10":[145],"demonstrate":[146],"method":[149],"surpasses":[150],"13":[151],"state-of-the-art":[152],"approaches":[153],"efficiency.":[156]},"counts_by_year":[],"updated_date":"2025-12-26T23:12:39.385286","created_date":"2025-12-26T00:00:00"}
