Abstract: Highlights•Propose a novel decision-based black-box adversarial attack method.•Employ the attention mechanism to improve evolutionary attack.•Generate more indistinguishable perturbations with limited queries.
Loading
OpenReview is a long-term project to advance science through improved peer review with legal nonprofit status. We gratefully acknowledge the support of the OpenReview Sponsors. © 2026 OpenReview