2024
CNFA: Conditional Normalizing Flow for Query-Limited Attack
ICASSP 2024accepted
Traditional black-box attack methods rely on sufficient feedback from the victim model through a large number of queries until the attack is successful. This may not be acceptable in real applications, since the deployed system may be equipped with certain defense mechanisms and only return the fina…