no code implementations • 26 Jan 2019 • Xiaolei Liu, Yuheng Luo, Xiaosong Zhang, Qingxin Zhu
Our experimental results show that both the MNIST images and the CIFAR-10 images can be perturbed to successful generate a black-box attack with 100\% probability on average.