no code implementations • 15 Apr 2020 • Yusi Lei, Sen Chen, Lingling Fan, Fu Song, Yang Liu
To launch attacks in the white- and grey-box scenarios, we also propose a sample-based collision attack to gain the knowledge of the target classifier.