{"id":"https://openalex.org/W7130724337","doi":"https://doi.org/10.48550/arxiv.2602.17645","title":"Pushing the Frontier of Black-Box LVLM Attacks via Fine-Grained Detail Targeting","display_name":"Pushing the Frontier of Black-Box LVLM Attacks via Fine-Grained Detail Targeting","publication_year":2026,"publication_date":"2026-02-19","ids":{"openalex":"https://openalex.org/W7130724337","doi":"https://doi.org/10.48550/arxiv.2602.17645"},"language":null,"primary_location":{"id":"pmh:doi:10.48550/arxiv.2602.17645","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":null,"any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5126489225","display_name":"Xiaohan Zhao","orcid":null},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Zhao, Xiaohan","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126462919","display_name":"Zhaoyi Li","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Li, Zhaoyi","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126525020","display_name":"Yaxin Luo","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Luo, Yaxin","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126526397","display_name":"Jiacheng Cui","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Cui, Jiacheng","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5126498367","display_name":"Zhiqiang Shen","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Shen, Zhiqiang","raw_affiliation_strings":[],"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5126489225"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9825999736785889,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9825999736785889,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10775","display_name":"Generative Adversarial Networks and Image Synthesis","score":0.0024999999441206455,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11775","display_name":"COVID-19 diagnosis using AI","score":0.0020000000949949026,"subfield":{"id":"https://openalex.org/subfields/2741","display_name":"Radiology, Nuclear Medicine and Imaging"},"field":{"id":"https://openalex.org/fields/27","display_name":"Medicine"},"domain":{"id":"https://openalex.org/domains/4","display_name":"Health Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/boosting","display_name":"Boosting (machine learning)","score":0.6402999758720398},{"id":"https://openalex.org/keywords/matching","display_name":"Matching (statistics)","score":0.595300018787384},{"id":"https://openalex.org/keywords/modular-design","display_name":"Modular design","score":0.5461000204086304},{"id":"https://openalex.org/keywords/upgrade","display_name":"Upgrade","score":0.5088000297546387},{"id":"https://openalex.org/keywords/set","display_name":"Set (abstract data type)","score":0.47679999470710754},{"id":"https://openalex.org/keywords/grammaticality","display_name":"Grammaticality","score":0.45500001311302185},{"id":"https://openalex.org/keywords/source-code","display_name":"Source code","score":0.3912999927997589},{"id":"https://openalex.org/keywords/training-set","display_name":"Training set","score":0.320499986410141}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6680999994277954},{"id":"https://openalex.org/C46686674","wikidata":"https://www.wikidata.org/wiki/Q466303","display_name":"Boosting (machine learning)","level":2,"score":0.6402999758720398},{"id":"https://openalex.org/C165064840","wikidata":"https://www.wikidata.org/wiki/Q1321061","display_name":"Matching (statistics)","level":2,"score":0.595300018787384},{"id":"https://openalex.org/C101468663","wikidata":"https://www.wikidata.org/wiki/Q1620158","display_name":"Modular design","level":2,"score":0.5461000204086304},{"id":"https://openalex.org/C2780615140","wikidata":"https://www.wikidata.org/wiki/Q920419","display_name":"Upgrade","level":2,"score":0.5088000297546387},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.47679999470710754},{"id":"https://openalex.org/C2779525943","wikidata":"https://www.wikidata.org/wiki/Q1187300","display_name":"Grammaticality","level":3,"score":0.45500001311302185},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.4108999967575073},{"id":"https://openalex.org/C43126263","wikidata":"https://www.wikidata.org/wiki/Q128751","display_name":"Source code","level":2,"score":0.3912999927997589},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.3840000033378601},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.3465999960899353},{"id":"https://openalex.org/C51632099","wikidata":"https://www.wikidata.org/wiki/Q3985153","display_name":"Training set","level":2,"score":0.320499986410141},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.3197999894618988},{"id":"https://openalex.org/C21200559","wikidata":"https://www.wikidata.org/wiki/Q7451068","display_name":"Sensitivity (control systems)","level":2,"score":0.3086000084877014},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3052999973297119},{"id":"https://openalex.org/C97256817","wikidata":"https://www.wikidata.org/wiki/Q1462316","display_name":"Spurious relationship","level":2,"score":0.2980000078678131},{"id":"https://openalex.org/C168167062","wikidata":"https://www.wikidata.org/wiki/Q1117970","display_name":"Component (thermodynamics)","level":2,"score":0.2955000102519989},{"id":"https://openalex.org/C2776502983","wikidata":"https://www.wikidata.org/wiki/Q690182","display_name":"Contrast (vision)","level":2,"score":0.28130000829696655},{"id":"https://openalex.org/C22367795","wikidata":"https://www.wikidata.org/wiki/Q7625208","display_name":"Structured prediction","level":2,"score":0.2806999981403351},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.27469998598098755},{"id":"https://openalex.org/C49937458","wikidata":"https://www.wikidata.org/wiki/Q2599292","display_name":"Probabilistic logic","level":2,"score":0.2743000090122223},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.27230000495910645},{"id":"https://openalex.org/C38976095","wikidata":"https://www.wikidata.org/wiki/Q752641","display_name":"Asymmetry","level":2,"score":0.2669999897480011},{"id":"https://openalex.org/C203005215","wikidata":"https://www.wikidata.org/wiki/Q79798","display_name":"Machine translation","level":2,"score":0.26600000262260437},{"id":"https://openalex.org/C2780440489","wikidata":"https://www.wikidata.org/wiki/Q5227278","display_name":"Data-driven","level":2,"score":0.2605000138282776}],"mesh":[],"locations_count":2,"locations":[{"id":"pmh:doi:10.48550/arxiv.2602.17645","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},{"id":"doi:10.48550/arxiv.2602.17645","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2602.17645","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:doi:10.48550/arxiv.2602.17645","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Black-box":[0],"adversarial":[1],"attacks":[2,181],"on":[3,182,188],"Large":[4],"Vision-Language":[5],"Models":[6],"(LVLMs)":[7],"are":[8,213],"challenging":[9],"due":[10],"to":[11,56,93,112,192,197,203],"missing":[12],"gradients":[13,43,64,103],"and":[14,33,50,65,71,85,88,199,211],"complex":[15],"multimodal":[16],"boundaries.":[17],"While":[18],"prior":[19,206],"state-of-the-art":[20],"transfer-based":[21,179],"approaches":[22],"like":[23],"M-Attack":[24,175],"perform":[25],"well":[26],"using":[27],"local":[28,48,76,108],"crop-level":[29],"matching":[30,77],"between":[31,69],"source":[32,70,83,97],"target":[34,72,86,117,125,141],"images,":[35],"we":[36],"find":[37],"this":[38,55,161],"induces":[39],"high-variance,":[40],"nearly":[41],"orthogonal":[42],"across":[44],"iterations,":[45],"violating":[46],"coherent":[47],"alignment":[49],"destabilizing":[51],"optimization.":[52],"We":[53,74,143],"attribute":[54],"(i)":[57],"ViT":[58],"translation":[59],"sensitivity":[60],"that":[61,176],"yields":[62],"spike-like":[63],"(ii)":[66],"structural":[67],"asymmetry":[68],"crops.":[73],"reformulate":[75],"as":[78,147],"an":[79],"asymmetric":[80],"expectation":[81],"over":[82,174],"transformations":[84],"semantics,":[87],"build":[89],"a":[90,128,133,138,156,170],"gradient-denoising":[91],"upgrade":[92],"M-Attack.":[94],"On":[95,115],"the":[96,116],"side,":[98,118],"Multi-Crop":[99],"Alignment":[100,121],"(MCA)":[101],"averages":[102],"from":[104,132,190,195,201],"multiple":[105],"independently":[106],"sampled":[107],"views":[109],"per":[110],"iteration":[111],"reduce":[113],"variance.":[114],"Auxiliary":[119],"Target":[120],"(ATA)":[122],"replaces":[123],"aggressive":[124],"augmentation":[126],"with":[127,155],"small":[129],"auxiliary":[130],"set":[131],"semantically":[134],"correlated":[135],"distribution,":[136],"producing":[137],"smoother,":[139],"lower-variance":[140],"manifold.":[142],"further":[144],"reinterpret":[145],"momentum":[146],"Patch":[148],"Momentum,":[149],"replaying":[150],"historical":[151],"crop":[152],"gradients;":[153],"combined":[154],"refined":[157],"patch-size":[158],"ensemble":[159],"(PE+),":[160],"strengthens":[162],"transferable":[163],"directions.":[164],"Together":[165],"these":[166],"modules":[167],"form":[168],"M-Attack-V2,":[169],"simple,":[171],"modular":[172],"enhancement":[173],"substantially":[177],"improves":[178],"black-box":[180,207],"frontier":[183],"LVLMs:":[184],"boosting":[185],"success":[186],"rates":[187],"Claude-4.0":[189],"8%":[191],"30%,":[193],"Gemini-2.5-Pro":[194],"83%":[196],"97%,":[198],"GPT-5":[200],"98%":[202],"100%,":[204],"outperforming":[205],"LVLM":[208],"attacks.":[209],"Code":[210],"data":[212],"publicly":[214],"available":[215],"at:":[216],"https://github.com/vila-lab/M-Attack-V2.":[217]},"counts_by_year":[],"updated_date":"2026-04-04T16:13:02.066488","created_date":"2026-02-21T00:00:00"}
