Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Evaluation of the robustness with the Square Attack #2

Open
max-andr opened this issue Dec 6, 2019 · 0 comments
Open

Evaluation of the robustness with the Square Attack #2

max-andr opened this issue Dec 6, 2019 · 0 comments

Comments

@max-andr
Copy link

max-andr commented Dec 6, 2019

Dear authors,

In our recent paper, we evaluated the robustness of your models using the Square Attack (a black-box attack based on random search). The adversarial accuracy we obtained came out to be far below the claimed adversarial accuracy. We formulated our findings in Section 5.2.

Here is also the robust.ml claim about our findings:
robust-ml/robust-ml.github.io#15

Our repository contains the code and steps needed to reproduce our evaluation. Please let us know if you disagree with the results that we obtained.

Best,
Maksym

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant