2025
Consensus-Robust Transfer Attacks via Parameter and Representation Perturbations
NeurIPS 2025poster
Adversarial examples crafted on one model often exhibit poor transferability to others, hindering their effectiveness in black-box settings. This limitation arises from two key factors: (i) \emph{decision-boundary variation} across models and (ii) \emph{representation drift} in feature space. We add…