{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T04:17:08Z","timestamp":1750220228688,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":26,"publisher":"ACM","license":[{"start":{"date-parts":[[2022,6,27]],"date-time":"2022-06-27T00:00:00Z","timestamp":1656288000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["U20B2063; 61976049; 62072080"],"award-info":[{"award-number":["U20B2063; 61976049; 62072080"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Sichuan International Cooperation Project","award":["2021YFH0108"],"award-info":[{"award-number":["2021YFH0108"]}]},{"name":"Sichuan Science and Technology Program","award":["2019ZDZX0008; 2019YFG0533; 2020YFS0057"],"award-info":[{"award-number":["2019ZDZX0008; 2019YFG0533; 2020YFS0057"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2022,6,27]]},"DOI":"10.1145\/3512527.3531399","type":"proceedings-article","created":{"date-parts":[[2022,6,23]],"date-time":"2022-06-23T22:23:32Z","timestamp":1656023012000},"page":"462-470","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":2,"title":["Accelerated Sign Hunter: A Sign-based Black-box Attack via Branch-Prune Strategy and Stabilized Hierarchical Search"],"prefix":"10.1145","author":[{"given":"Siyuan","family":"Li","sequence":"first","affiliation":[{"name":"University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Guangji","family":"Huang","sequence":"additional","affiliation":[{"name":"University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xing","family":"Xu","sequence":"additional","affiliation":[{"name":"University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yang","family":"Yang","sequence":"additional","affiliation":[{"name":"University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Fumin","family":"Shen","sequence":"additional","affiliation":[{"name":"University of Electronic Science and Technology of China &amp; Koala Uran Technology Ltd, Chengdu, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2022,6,27]]},"reference":[{"key":"e_1_3_2_2_1_1","volume-title":"Sign Bits Are All You Need for Black-Box Attacks. In 8th International Conference on Learning Representations, ICLR","author":"Al-Dujaili Abdullah","year":"2020","unstructured":"Abdullah Al-Dujaili and Una-May O'Reilly . 2020 . Sign Bits Are All You Need for Black-Box Attacks. In 8th International Conference on Learning Representations, ICLR 2020. Abdullah Al-Dujaili and Una-May O'Reilly. 2020. Sign Bits Are All You Need for Black-Box Attacks. In 8th International Conference on Learning Representations, ICLR 2020."},{"key":"e_1_3_2_2_2_1","volume-title":"Square Attack: A Query-Efficient Black-Box Adversarial Attack via Random Search. In Computer Vision - ECCV 2020 - 16th European Conference (Lecture Notes in Computer Science","author":"Andriushchenko Maksym","year":"2020","unstructured":"Maksym Andriushchenko , Francesco Croce , Nicolas Flammarion , and Matthias Hein . 2020 . Square Attack: A Query-Efficient Black-Box Adversarial Attack via Random Search. In Computer Vision - ECCV 2020 - 16th European Conference (Lecture Notes in Computer Science , Vol. 12368). 484-- 501 . Maksym Andriushchenko, Francesco Croce, Nicolas Flammarion, and Matthias Hein. 2020. Square Attack: A Query-Efficient Black-Box Adversarial Attack via Random Search. In Computer Vision - ECCV 2020 - 16th European Conference (Lecture Notes in Computer Science, Vol. 12368). 484--501."},{"key":"e_1_3_2_2_3_1","volume-title":"Proceedings of the 35th International Conference on Machine Learning, ICML 2018 (Proceedings of Machine Learning Research","volume":"568","author":"Bernstein Jeremy","year":"2018","unstructured":"Jeremy Bernstein , Yu-Xiang Wang , Kamyar Azizzadenesheli , and Animashree Anandkumar . 2018 . SIGNSGD: Compressed Optimisation for Non-Convex Problems . In Proceedings of the 35th International Conference on Machine Learning, ICML 2018 (Proceedings of Machine Learning Research , Vol. 80). 559-- 568 . Jeremy Bernstein, Yu-Xiang Wang, Kamyar Azizzadenesheli, and Animashree Anandkumar. 2018. SIGNSGD: Compressed Optimisation for Non-Convex Problems. In Proceedings of the 35th International Conference on Machine Learning, ICML 2018 (Proceedings of Machine Learning Research, Vol. 80). 559--568."},{"key":"e_1_3_2_2_4_1","volume-title":"Decision-Based Adversarial Attacks: Reliable Attacks Against Black-Box Machine Learning Models. In 6th International Conference on Learning Representations, ICLR","author":"Brendel Wieland","year":"2018","unstructured":"Wieland Brendel , Jonas Rauber , and Matthias Bethge . 2018 . Decision-Based Adversarial Attacks: Reliable Attacks Against Black-Box Machine Learning Models. In 6th International Conference on Learning Representations, ICLR 2018. Wieland Brendel, Jonas Rauber, and Matthias Bethge. 2018. Decision-Based Adversarial Attacks: Reliable Attacks Against Black-Box Machine Learning Models. In 6th International Conference on Learning Representations, ICLR 2018."},{"volume-title":"Towards Evaluating the Robustness of Neural Networks. In 2017 IEEE Symposium on Security and Privacy. 39--57","author":"Carlini Nicholas","key":"e_1_3_2_2_5_1","unstructured":"Nicholas Carlini and David A. Wagner . 2017 . Towards Evaluating the Robustness of Neural Networks. In 2017 IEEE Symposium on Security and Privacy. 39--57 . Nicholas Carlini and David A. Wagner. 2017. Towards Evaluating the Robustness of Neural Networks. In 2017 IEEE Symposium on Security and Privacy. 39--57."},{"key":"e_1_3_2_2_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140448"},{"key":"e_1_3_2_2_7_1","volume-title":"Sign-OPT: A Query-Efficient Hard-label Adversarial Attack. In 8th International Conference on Learning Representations, ICLR","author":"Cheng Minhao","year":"2020","unstructured":"Minhao Cheng , Simranjit Singh , Patrick H. Chen , Pin-Yu Chen , Sijia Liu , and Cho-Jui Hsieh . 2020 . Sign-OPT: A Query-Efficient Hard-label Adversarial Attack. In 8th International Conference on Learning Representations, ICLR 2020. Minhao Cheng, Simranjit Singh, Patrick H. Chen, Pin-Yu Chen, Sijia Liu, and Cho-Jui Hsieh. 2020. Sign-OPT: A Query-Efficient Hard-label Adversarial Attack. In 8th International Conference on Learning Representations, ICLR 2020."},{"key":"e_1_3_2_2_8_1","volume-title":"Boosting Adversarial Attacks With Momentum. In 2018 IEEE Conference on Computer Vision and Pattern Recognition, CVPR","author":"Dong Yinpeng","year":"2018","unstructured":"Yinpeng Dong , Fangzhou Liao , Tianyu Pang , Hang Su , Jun Zhu , Xiaolin Hu , and Jianguo Li . 2018 . Boosting Adversarial Attacks With Momentum. In 2018 IEEE Conference on Computer Vision and Pattern Recognition, CVPR 2018. 9185--9193. Yinpeng Dong, Fangzhou Liao, Tianyu Pang, Hang Su, Jun Zhu, Xiaolin Hu, and Jianguo Li. 2018. Boosting Adversarial Attacks With Momentum. In 2018 IEEE Conference on Computer Vision and Pattern Recognition, CVPR 2018. 9185--9193."},{"volume-title":"Computer Vision - ECCV 2020 - 16th European Conference (Lecture Notes in Computer Science","author":"Gao Lianli","key":"e_1_3_2_2_9_1","unstructured":"Lianli Gao , Qilong Zhang , Jingkuan Song , Xianglong Liu , and Heng Tao Shen . 2020. Patch-Wise Attack for Fooling Deep Neural Network . In Computer Vision - ECCV 2020 - 16th European Conference (Lecture Notes in Computer Science , Vol. 12373). 307-- 322 . Lianli Gao, Qilong Zhang, Jingkuan Song, Xianglong Liu, and Heng Tao Shen. 2020. Patch-Wise Attack for Fooling Deep Neural Network. In Computer Vision - ECCV 2020 - 16th European Conference (Lecture Notes in Computer Science, Vol. 12373). 307--322."},{"key":"e_1_3_2_2_10_1","volume-title":"Explaining and Harnessing Adversarial Examples. In 3rd International Conference on Learning Representations, ICLR","author":"Goodfellow Ian J.","year":"2015","unstructured":"Ian J. Goodfellow , Jonathon Shlens , and Christian Szegedy . 2015 . Explaining and Harnessing Adversarial Examples. In 3rd International Conference on Learning Representations, ICLR 2015. Ian J. Goodfellow, Jonathon Shlens, and Christian Szegedy. 2015. Explaining and Harnessing Adversarial Examples. In 3rd International Conference on Learning Representations, ICLR 2015."},{"key":"e_1_3_2_2_11_1","volume-title":"6th International Conference on Learning Representations, ICLR","author":"Guo Chuan","year":"2018","unstructured":"Chuan Guo , Mayank Rana , Moustapha Ciss\u00e9 , and Laurens van der Maaten. 2018. Countering Adversarial Images using Input Transformations . In 6th International Conference on Learning Representations, ICLR 2018 . Chuan Guo, Mayank Rana, Moustapha Ciss\u00e9, and Laurens van der Maaten. 2018. Countering Adversarial Images using Input Transformations. In 6th International Conference on Learning Representations, ICLR 2018."},{"key":"e_1_3_2_2_12_1","volume-title":"Proceedings of the 35th International Conference on Machine Learning, ICML 2018 (Proceedings of Machine Learning Research","volume":"2151","author":"Ilyas Andrew","year":"2018","unstructured":"Andrew Ilyas , Logan Engstrom , Anish Athalye , and Jessy Lin . 2018 . Black-box Adversarial Attacks with Limited Queries and Information . In Proceedings of the 35th International Conference on Machine Learning, ICML 2018 (Proceedings of Machine Learning Research , Vol. 80). 2142-- 2151 . Andrew Ilyas, Logan Engstrom, Anish Athalye, and Jessy Lin. 2018. Black-box Adversarial Attacks with Limited Queries and Information. In Proceedings of the 35th International Conference on Machine Learning, ICML 2018 (Proceedings of Machine Learning Research, Vol. 80). 2142--2151."},{"key":"e_1_3_2_2_13_1","volume-title":"Prior Convictions: Black-box Adversarial Attacks with Bandits and Priors. In 7th International Conference on Learning Representations, ICLR","author":"Ilyas Andrew","year":"2019","unstructured":"Andrew Ilyas , Logan Engstrom , and Aleksander Madry . 2019 . Prior Convictions: Black-box Adversarial Attacks with Bandits and Priors. In 7th International Conference on Learning Representations, ICLR 2019. Andrew Ilyas, Logan Engstrom, and Aleksander Madry. 2019. Prior Convictions: Black-box Adversarial Attacks with Bandits and Priors. In 7th International Conference on Learning Representations, ICLR 2019."},{"key":"e_1_3_2_2_14_1","volume-title":"Yuille","author":"Li Yingwei","year":"2020","unstructured":"Yingwei Li , Song Bai , Cihang Xie , Zhenyu Liao , Xiaohui Shen , and Alan L . Yuille . 2020 . Regional Homogeneity : Towards Learning Transferable Universal Adversarial Perturbations Against Defenses. In Computer Vision - ECCV 2020 - 16th European Conference (Lecture Notes in Computer Science , Vol. 12356). 795-- 813 . Yingwei Li, Song Bai, Cihang Xie, Zhenyu Liao, Xiaohui Shen, and Alan L. Yuille. 2020. Regional Homogeneity: Towards Learning Transferable Universal Adversarial Perturbations Against Defenses. In Computer Vision - ECCV 2020 - 16th European Conference (Lecture Notes in Computer Science, Vol. 12356). 795--813."},{"key":"e_1_3_2_2_15_1","volume-title":"7th International Conference on Learning Representations, ICLR","author":"Liu Sijia","year":"2019","unstructured":"Sijia Liu , Pin-Yu Chen , Xiangyi Chen , and Mingyi Hong . 2019 . signSGD via Zeroth-Order Oracle . In 7th International Conference on Learning Representations, ICLR 2019. Sijia Liu, Pin-Yu Chen, Xiangyi Chen, and Mingyi Hong. 2019. signSGD via Zeroth-Order Oracle. In 7th International Conference on Learning Representations, ICLR 2019."},{"key":"e_1_3_2_2_16_1","volume-title":"6th International Conference on Learning Representations, ICLR","author":"Madry Aleksander","year":"2018","unstructured":"Aleksander Madry , Aleksandar Makelov , Ludwig Schmidt , Dimitris Tsipras , and Adrian Vladu . 2018 . Towards Deep Learning Models Resistant to Adversarial Attacks . In 6th International Conference on Learning Representations, ICLR 2018. Aleksander Madry, Aleksandar Makelov, Ludwig Schmidt, Dimitris Tsipras, and Adrian Vladu. 2018. Towards Deep Learning Models Resistant to Adversarial Attacks. In 6th International Conference on Learning Representations, ICLR 2018."},{"key":"e_1_3_2_2_17_1","volume-title":"6th International Conference on Learning Representations, ICLR","author":"Madry Aleksander","year":"2018","unstructured":"Aleksander Madry , Aleksandar Makelov , Ludwig Schmidt , Dimitris Tsipras , and Adrian Vladu . 2018 . Towards Deep Learning Models Resistant to Adversarial Attacks . In 6th International Conference on Learning Representations, ICLR 2018. Aleksander Madry, Aleksandar Makelov, Ludwig Schmidt, Dimitris Tsipras, and Adrian Vladu. 2018. Towards Deep Learning Models Resistant to Adversarial Attacks. In 6th International Conference on Learning Representations, ICLR 2018."},{"key":"e_1_3_2_2_18_1","volume-title":"Proceedings of the 36th International Conference on Machine Learning (Proceedings of Machine Learning Research","volume":"4645","author":"Moon Seungyong","year":"2019","unstructured":"Seungyong Moon , Gaon An , and Hyun Oh Song . 2019 . Parsimonious Black-Box Adversarial Attacks via Efficient Combinatorial Optimization . In Proceedings of the 36th International Conference on Machine Learning (Proceedings of Machine Learning Research , Vol. 97). 4636-- 4645 . Seungyong Moon, Gaon An, and Hyun Oh Song. 2019. Parsimonious Black-Box Adversarial Attacks via Efficient Combinatorial Optimization. In Proceedings of the 36th International Conference on Machine Learning (Proceedings of Machine Learning Research, Vol. 97). 4636--4645."},{"key":"e_1_3_2_2_19_1","volume-title":"Universal Adversarial Perturbations. In 2017 IEEE Conference on Computer Vision and Pattern Recognition. 86--94","author":"Moosavi-Dezfooli Seyed-Mohsen","year":"2017","unstructured":"Seyed-Mohsen Moosavi-Dezfooli , Alhussein Fawzi , Omar Fawzi , and Pascal Frossard . 2017 . Universal Adversarial Perturbations. In 2017 IEEE Conference on Computer Vision and Pattern Recognition. 86--94 . Seyed-Mohsen Moosavi-Dezfooli, Alhussein Fawzi, Omar Fawzi, and Pascal Frossard. 2017. Universal Adversarial Perturbations. In 2017 IEEE Conference on Computer Vision and Pattern Recognition. 86--94."},{"key":"e_1_3_2_2_20_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"e_1_3_2_2_21_1","volume-title":"The Limitations of Deep Learning in Adversarial Settings. In IEEE European Symposium on Security and Privacy. 372--387","author":"Papernot Nicolas","year":"2016","unstructured":"Nicolas Papernot , Patrick D. McDaniel , Somesh Jha , Matt Fredrikson , Z. Berkay Celik , and Ananthram Swami . 2016 . The Limitations of Deep Learning in Adversarial Settings. In IEEE European Symposium on Security and Privacy. 372--387 . Nicolas Papernot, Patrick D. McDaniel, Somesh Jha, Matt Fredrikson, Z. Berkay Celik, and Ananthram Swami. 2016. The Limitations of Deep Learning in Adversarial Settings. In IEEE European Symposium on Security and Privacy. 372--387."},{"key":"e_1_3_2_2_22_1","volume-title":"Devin Willmott, and J. Zico Kolter.","author":"Shukla Satya Narayan","year":"2019","unstructured":"Satya Narayan Shukla , Anit Kumar Sahu , Devin Willmott, and J. Zico Kolter. 2019 . Black-box Adversarial Attacks with Bayesian Optimization. CoRR abs\/1909.13857 (2019). Satya Narayan Shukla, Anit Kumar Sahu, Devin Willmott, and J. Zico Kolter. 2019. Black-box Adversarial Attacks with Bayesian Optimization. CoRR abs\/1909.13857 (2019)."},{"key":"e_1_3_2_2_23_1","volume-title":"2nd International Conference on Learning Representations, ICLR","author":"Szegedy Christian","year":"2014","unstructured":"Christian Szegedy , Wojciech Zaremba , Ilya Sutskever , Joan Bruna , Dumitru Erhan , Ian J. Goodfellow , and Rob Fergus . 2014 . Intriguing properties of neural networks . In 2nd International Conference on Learning Representations, ICLR 2014. Christian Szegedy, Wojciech Zaremba, Ilya Sutskever, Joan Bruna, Dumitru Erhan, Ian J. Goodfellow, and Rob Fergus. 2014. Intriguing properties of neural networks. In 2nd International Conference on Learning Representations, ICLR 2014."},{"key":"e_1_3_2_2_24_1","volume-title":"Ensemble Adversarial Training: Attacks and Defenses. In 6th International Conference on Learning Representations, ICLR","author":"Tram\u00e8r Florian","year":"2018","unstructured":"Florian Tram\u00e8r , Alexey Kurakin , Nicolas Papernot , Ian J. Goodfellow , Dan Boneh , and Patrick D . McDaniel. 2018 . Ensemble Adversarial Training: Attacks and Defenses. In 6th International Conference on Learning Representations, ICLR 2018 . Florian Tram\u00e8r, Alexey Kurakin, Nicolas Papernot, Ian J. Goodfellow, Dan Boneh, and Patrick D. McDaniel. 2018. Ensemble Adversarial Training: Attacks and Defenses. In 6th International Conference on Learning Representations, ICLR 2018."},{"key":"e_1_3_2_2_25_1","volume-title":"Improving Transferability of Adversarial Examples With Input Diversity. In IEEE Conference on Computer Vision and Pattern Recognition, CVPR","author":"Xie Cihang","year":"2019","unstructured":"Cihang Xie , Zhishuai Zhang , Yuyin Zhou , Song Bai , Jianyu Wang , Zhou Ren , and Alan L. Yuille . 2019 . Improving Transferability of Adversarial Examples With Input Diversity. In IEEE Conference on Computer Vision and Pattern Recognition, CVPR 2019 . 2730--2739. Cihang Xie, Zhishuai Zhang, Yuyin Zhou, Song Bai, Jianyu Wang, Zhou Ren, and Alan L. Yuille. 2019. Improving Transferability of Adversarial Examples With Input Diversity. In IEEE Conference on Computer Vision and Pattern Recognition, CVPR 2019. 2730--2739."},{"key":"e_1_3_2_2_26_1","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i04.6173"}],"event":{"name":"ICMR '22: International Conference on Multimedia Retrieval","sponsor":["SIGMM ACM Special Interest Group on Multimedia"],"location":"Newark NJ USA","acronym":"ICMR '22"},"container-title":["Proceedings of the 2022 International Conference on Multimedia Retrieval"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3512527.3531399","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3512527.3531399","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T19:30:12Z","timestamp":1750188612000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3512527.3531399"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,6,27]]},"references-count":26,"alternative-id":["10.1145\/3512527.3531399","10.1145\/3512527"],"URL":"https:\/\/doi.org\/10.1145\/3512527.3531399","relation":{},"subject":[],"published":{"date-parts":[[2022,6,27]]},"assertion":[{"value":"2022-06-27","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}