pith. machine review for the scientific record. sign in

arxiv: 1812.11377 · v2 · submitted 2018-12-29 · 💻 cs.LG · cs.CR· stat.ML

Recognition: unknown

Hessian-Aware Zeroth-Order Optimization for Black-Box Adversarial Attack

Authors on Pith no claims yet
classification 💻 cs.LG cs.CRstat.ML
keywords zeroth-orderadversarialattackblack-boxoptimizationalgorithmapproximationcomplexity
0
0 comments X
read the original abstract

Zeroth-order optimization is an important research topic in machine learning. In recent years, it has become a key tool in black-box adversarial attack to neural network based image classifiers. However, existing zeroth-order optimization algorithms rarely extract second-order information of the model function. In this paper, we utilize the second-order information of the objective function and propose a novel \textit{Hessian-aware zeroth-order algorithm} called \texttt{ZO-HessAware}. Our theoretical result shows that \texttt{ZO-HessAware} has an improved zeroth-order convergence rate and query complexity under structured Hessian approximation, where we propose a few approximation methods for estimating Hessian. Our empirical studies on the black-box adversarial attack problem validate that our algorithm can achieve improved success rates with a lower query complexity.

This paper has not been read by Pith yet.

discussion (0)

Sign in with ORCID, Apple, or X to comment. Anyone can read and Pith papers without signing in.

Forward citations

Cited by 1 Pith paper

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score.

  1. From Cursed to Competitive: Closing the ZO-FO Gap via Input-to-State Stability

    math.OC 2026-04 unverdicted novelty 6.0

    Zeroth-order methods achieve the same expected convergence rate as first-order methods without extra dimension dependence by treating them as input-to-state stable systems with controllable perturbations.