Abstract: Highlights•We improve minimum-norm attacks using different losses, optimizers, and schedulers.•We leverage hyperparameter optimization to improve the attack performance.•We compute full robustness-perturbation curves with a single, effective attack.
Loading