← Search

Jianting Ning

2 accepted papers

2026

GRASP: Hard-Label Black-Box Malware Evasion with Higher Success, Fewer Queries, and Smaller Perturbations

IJCAI 2026

Machine learning (ML)-based malware detectors are widely deployed but remain vulnerable to adversarial attacks. However, under hard-label black-box access, existing adversarial attacks on Windows Portable Executable (PE) malware are often query-inefficient and incur large file-size inflation. A comm

Cited by 0Scholar
2026

Persistent Backdoor Attacks in Class-Incremental Learning via Structural Invariant Anchoring

ICML 2026poster

Continual Learning (CL) continually performs parameter updates, posing a significant challenge to backdoor persistence. In this paper, we reveal that the most advanced attack relies on an implicit assumption that task-critical neurons remain stable across task learning; however, it does not hold in …

Cited by 0SourceScholar