Abstract: Highlights•Simple, yet powerful, method to copy a black-box CNN model with random natural images.•Some constraints are waived and copy attacks are performed with less information.•Understanding copy attacks with random natural images.•Throughout evaluation of copycat models created with random natural images.
Loading