2025
Improving Adversarial Transferability through Channel-wise Scaling and Frequency-random Dropping
ICASSP 2025accepted
For black-box attacks, most existing attack methods exhibit weak transferability due to the significant discrepancy between substitute model and victim model. We argue that the model-specific discriminative regions are a key factor causing overfitting to the source model. However, existing model aug…