{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,5]],"date-time":"2026-05-05T00:40:25Z","timestamp":1777941625086,"version":"3.51.4"},"publisher-location":"New York, NY, USA","reference-count":45,"publisher":"ACM","license":[{"start":{"date-parts":[[2024,7,14]],"date-time":"2024-07-14T00:00:00Z","timestamp":1720915200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2024,7,14]]},"DOI":"10.1145\/3638530.3664121","type":"proceedings-article","created":{"date-parts":[[2024,8,1]],"date-time":"2024-08-01T14:54:43Z","timestamp":1722524083000},"page":"1846-1854","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":5,"title":["L-AutoDA: Large Language Models for Automatically Evolving Decision-based Adversarial Attacks"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-5412-914X","authenticated-orcid":false,"given":"Ping","family":"Guo","sequence":"first","affiliation":[{"name":"City University of Hong Kong, Hong Kong, Hong Kong"},{"name":"CityU Shenzhen Research Institute, Shenzhen, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6719-0409","authenticated-orcid":false,"given":"Fei","family":"Liu","sequence":"additional","affiliation":[{"name":"City University of Hong Kong, Hong Kong, Hong Kong"},{"name":"CityU Shenzhen Research Institute, Shenzhen, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5298-6893","authenticated-orcid":false,"given":"Xi","family":"Lin","sequence":"additional","affiliation":[{"name":"City University of Hong Kong, Hong Kong, Hong Kong"},{"name":"CityU Shenzhen Research Institute, Shenzhen, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0163-2846","authenticated-orcid":false,"given":"Qingchuan","family":"Zhao","sequence":"additional","affiliation":[{"name":"City University of Hong Kong, Hong Kong, Hong Kong"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0786-0671","authenticated-orcid":false,"given":"Qingfu","family":"Zhang","sequence":"additional","affiliation":[{"name":"City University of Hong Kong, Hong Kong, Hong Kong"},{"name":"CityU Shenzhen Research Institute, Shenzhen, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2024,8]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"Chip-Chat: Challenges and Opportunities in Conversational Hardware Design. arXiv preprint arXiv:2305.13243","author":"Blocklove Jason","year":"2023","unstructured":"Jason Blocklove, Siddharth Garg, Ramesh Karri, and Hammond Pearce. 2023. Chip-Chat: Challenges and Opportunities in Conversational Hardware Design. arXiv preprint arXiv:2305.13243 (2023)."},{"key":"e_1_3_2_1_2_1","volume-title":"Decision-Based Adversarial Attacks: Reliable Attacks Against Black-Box Machine Learning Models. In 6th International Conference on Learning Representations, (ICLR). OpenReview.net.","author":"Brendel Wieland","year":"2018","unstructured":"Wieland Brendel, Jonas Rauber, and Matthias Bethge. 2018. Decision-Based Adversarial Attacks: Reliable Attacks Against Black-Box Machine Learning Models. In 6th International Conference on Learning Representations, (ICLR). OpenReview.net."},{"key":"e_1_3_2_1_3_1","volume-title":"Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security, (CCS). ACM.","author":"Cao Yulong","unstructured":"Yulong Cao, Chaowei Xiao, Benjamin Cyr, Yimeng Zhou, Won Park, Sara Rampazzi, Qi Alfred Chen, Kevin Fu, and Z. Morley Mao. 2019. Adversarial Sensor Attack on LiDAR-based Perception in Autonomous Driving. In Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security, (CCS). ACM."},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","unstructured":"Anirban Chakraborty Manaar Alam Vishal Dey Anupam Chattopadhyay and Debdeep Mukhopadhyay. 2021. A survey on adversarial attacks and defences. CAAI Trans. Intell. Technol. (2021). 10.1049\/CIT2.12028","DOI":"10.1049\/CIT2.12028"},{"key":"e_1_3_2_1_5_1","volume-title":"HopSkipJumpAttack: A Query-Efficient Decision-Based Attack. In 2020 IEEE Symposium on Security and Privacy, (SP). IEEE.","author":"Chen Jianbo","unstructured":"Jianbo Chen, Michael I. Jordan, and Martin J. Wainwright. 2020. HopSkipJumpAttack: A Query-Efficient Decision-Based Attack. In 2020 IEEE Symposium on Security and Privacy, (SP). IEEE."},{"key":"e_1_3_2_1_6_1","volume-title":"Exploring the potential of GPT-4 in biomedical engineering: the dawn of a new era. Annals of Biomedical Engineering","author":"Cheng Kunming","year":"2023","unstructured":"Kunming Cheng, Qiang Guo, Yongbin He, Yanqiu Lu, Shuqin Gu, and Haiyang Wu. 2023. Exploring the potential of GPT-4 in biomedical engineering: the dawn of a new era. Annals of Biomedical Engineering (2023), 1--9."},{"key":"e_1_3_2_1_7_1","volume-title":"Query-Efficient Hard-label Black-box Attack: An Optimization-based Approach. In 7th International Conference on Learning Representations, ICLR. OpenReview.net.","author":"Cheng Minhao","year":"2019","unstructured":"Minhao Cheng, Thong Le, Pin-Yu Chen, Huan Zhang, Jinfeng Yi, and Cho-Jui Hsieh. 2019. Query-Efficient Hard-label Black-box Attack: An Optimization-based Approach. In 7th International Conference on Learning Representations, ICLR. OpenReview.net."},{"key":"e_1_3_2_1_8_1","volume-title":"Sign-OPT: A Query-Efficient Hard-label Adversarial Attack. In 8th International Conference on Learning Representations, ICLR. OpenReview.net.","author":"Cheng Minhao","year":"2020","unstructured":"Minhao Cheng, Simranjit Singh, Patrick H. Chen, Pin-Yu Chen, Sijia Liu, and Cho-Jui Hsieh. 2020. Sign-OPT: A Query-Efficient Hard-label Adversarial Attack. In 8th International Conference on Learning Representations, ICLR. OpenReview.net."},{"key":"e_1_3_2_1_9_1","volume-title":"Proceedings of the Neural Information Processing Systems Track on Datasets and Benchmarks 1, (NeurIPS).","author":"Croce Francesco","year":"2021","unstructured":"Francesco Croce, Maksym Andriushchenko, Vikash Sehwag, Edoardo Debenedetti, Nicolas Flammarion, Mung Chiang, Prateek Mittal, and Matthias Hein. 2021. RobustBench: a standardized adversarial robustness benchmark. In Proceedings of the Neural Information Processing Systems Track on Datasets and Benchmarks 1, (NeurIPS)."},{"key":"e_1_3_2_1_10_1","unstructured":"Eduardo Dadalto. 2022. ResNet18 trained on CIFAR10. https:\/\/huggingface.co\/edadaltocg\/resnet18_cifar10. Accessed: 2023-07-01."},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.2303.14133"},{"key":"e_1_3_2_1_12_1","volume-title":"Efficient Decision-Based Black-Box Adversarial Attacks on Face Recognition. In IEEE Conference on Computer Vision and Pattern Recognition, (CVPR). Computer Vision Foundation \/ IEEE.","author":"Dong Yinpeng","year":"2019","unstructured":"Yinpeng Dong, Hang Su, Baoyuan Wu, Zhifeng Li, Wei Liu, Tong Zhang, and Jun Zhu. 2019. Efficient Decision-Based Black-Box Adversarial Attacks on Face Recognition. In IEEE Conference on Computer Vision and Pattern Recognition, (CVPR). Computer Vision Foundation \/ IEEE."},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1145\/3576915.3623116"},{"key":"e_1_3_2_1_14_1","volume-title":"Efficient and Robust Automated Machine Learning. In Advances in Neural Information Processing Systems 28: Annual Conference on Neural Information Processing Systems","author":"Feurer Matthias","year":"2015","unstructured":"Matthias Feurer, Aaron Klein, Katharina Eggensperger, Jost Tobias Springenberg, Manuel Blum, and Frank Hutter. 2015. Efficient and Robust Automated Machine Learning. In Advances in Neural Information Processing Systems 28: Annual Conference on Neural Information Processing Systems 2015."},{"key":"e_1_3_2_1_15_1","volume-title":"AutoDA: Automated Decision-based Iterative Adversarial Attacks. In 31st USENIX Security Symposium, USENIX Security","author":"Fu Qi-An","year":"2022","unstructured":"Qi-An Fu, Yinpeng Dong, Hang Su, Jun Zhu, and Chao Zhang. 2022. AutoDA: Automated Decision-based Iterative Adversarial Attacks. In 31st USENIX Security Symposium, USENIX Security 2022. USENIX Association, 3557--3574."},{"key":"e_1_3_2_1_16_1","volume-title":"Explaining and Harnessing Adversarial Examples. In 3rd International Conference on Learning Representations, (ICLR).","author":"Goodfellow Ian J.","year":"2015","unstructured":"Ian J. Goodfellow, Jonathon Shlens, and Christian Szegedy. 2015. Explaining and Harnessing Adversarial Examples. In 3rd International Conference on Learning Representations, (ICLR)."},{"key":"e_1_3_2_1_17_1","volume-title":"A systematic survey of prompt engineering on vision-language foundation models. arXiv preprint arXiv:2307.12980","author":"Gu Jindong","year":"2023","unstructured":"Jindong Gu, Zhen Han, Shuo Chen, Ahmad Beirami, Bailan He, Gengyuan Zhang, Ruotong Liao, Yao Qin, Volker Tresp, and Philip Torr. 2023. A systematic survey of prompt engineering on vision-language foundation models. arXiv preprint arXiv:2307.12980 (2023)."},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"crossref","unstructured":"Sumit Gulwani Oleksandr Polozov Rishabh Singh et al. 2017. Program synthesis. Foundations and Trends\u00ae in Programming Languages (2017).","DOI":"10.1561\/9781680832938"},{"key":"e_1_3_2_1_19_1","volume-title":"PuriDefense: Randomized Local Implicit Adversarial Purification for Defending Black-box Query-based Attacks. arXiv preprint arXiv:2401.10586","author":"Guo Ping","year":"2024","unstructured":"Ping Guo, Zhiyuan Yang, Xi Lin, Qingchuan Zhao, and Qingfu Zhang. 2024. PuriDefense: Randomized Local Implicit Adversarial Purification for Defending Black-box Query-based Attacks. arXiv preprint arXiv:2401.10586 (2024)."},{"key":"e_1_3_2_1_20_1","volume-title":"ChatEDA: A Large Language Model Powered Autonomous Agent for EDA. arXiv preprint arXiv:2308.10204","author":"He Zhuolun","year":"2023","unstructured":"Zhuolun He, Haoyuan Wu, Xinyun Zhang, Xufeng Yao, Su Zheng, Haisheng Zheng, and Bei Yu. 2023. ChatEDA: A Large Language Model Powered Autonomous Agent for EDA. arXiv preprint arXiv:2308.10204 (2023)."},{"key":"e_1_3_2_1_21_1","volume-title":"Proceedings of the 35th International Conference on Machine Learning, (ICML) (Proceedings of Machine Learning Research). PMLR.","author":"Ilyas Andrew","year":"2018","unstructured":"Andrew Ilyas, Logan Engstrom, Anish Athalye, and Jessy Lin. 2018. Black-box Adversarial Attacks with Limited Queries and Information. In Proceedings of the 35th International Conference on Machine Learning, (ICML) (Proceedings of Machine Learning Research). PMLR."},{"key":"e_1_3_2_1_22_1","volume-title":"Is GPT-3 all you need for low-data discovery in chemistry?","author":"Jablonka Kevin Maik","year":"2023","unstructured":"Kevin Maik Jablonka, Philippe Schwaller, Andres Ortega-Guerrero, and Berend Smit. 2023. Is GPT-3 all you need for low-data discovery in chemistry? (2023)."},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"crossref","unstructured":"Enkelejda Kasneci Kathrin Se\u00dfler Stefan K\u00fcchemann Maria Bannert Daryna Dementieva Frank Fischer Urs Gasser Georg Groh Stephan G\u00fcnnemann Eyke H\u00fcllermeier et al. 2023. ChatGPT for good? On opportunities and challenges of large language models for education. Learning and individual differences 103 (2023) 102274.","DOI":"10.1016\/j.lindif.2023.102274"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1056\/NEJMsr2214184"},{"key":"e_1_3_2_1_26_1","volume-title":"Stanley","author":"Lehman Joel","year":"2024","unstructured":"Joel Lehman, Jonathan Gordon, Shawn Jain, Kamal Ndousse, Cathy Yeh, and Kenneth O. Stanley. 2024. Evolution Through Large Models. Springer Nature Singapore, Singapore, 331--366."},{"key":"e_1_3_2_1_27_1","unstructured":"Deqiang Li Qianmu Li Yanfang (Fanny) Ye and Shouhuai Xu. 2023. Arms Race in Adversarial Malware Detection: A Survey. ACM Comput. Surv. (2023)."},{"key":"e_1_3_2_1_28_1","unstructured":"Fei Liu Xialiang Tong Mingxuan Yuan Xi Lin Fu Luo Zhenkun Wang Zhichao Lu and Qingfu Zhang. 2024. Evolution of Heuristics: Towards Efficient Automatic Algorithm Design Using Large Language Mode. (2024). arXiv:2401.02051"},{"key":"e_1_3_2_1_29_1","volume-title":"Algorithm Evolution Using Large Language Model. arXiv preprint arXiv:2311.15249","author":"Liu Fei","year":"2023","unstructured":"Fei Liu, Xialiang Tong, Mingxuan Yuan, and Qingfu Zhang. 2023. Algorithm Evolution Using Large Language Model. arXiv preprint arXiv:2311.15249 (2023)."},{"key":"e_1_3_2_1_30_1","volume-title":"6th International Conference on Learning Representations, (ICLR). OpenReview.net.","author":"Madry Aleksander","year":"2018","unstructured":"Aleksander Madry, Aleksandar Makelov, Ludwig Schmidt, Dimitris Tsipras, and Adrian Vladu. 2018. Towards Deep Learning Models Resistant to Adversarial Attacks. In 6th International Conference on Learning Representations, (ICLR). OpenReview.net."},{"key":"e_1_3_2_1_31_1","volume-title":"Thien Huu Nguyen, Oscar Sainz, Eneko Agirre, Ilana Heintz, and Dan Roth.","author":"Min Bonan","year":"2021","unstructured":"Bonan Min, Hayley Ross, Elior Sulem, Amir Pouran Ben Veyseh, Thien Huu Nguyen, Oscar Sainz, Eneko Agirre, Ilana Heintz, and Dan Roth. 2021. Recent advances in natural language processing via large pre-trained language models: A survey. Comput. Surveys (2021)."},{"key":"e_1_3_2_1_32_1","volume-title":"Dean Carignan, and Eric Horvitz.","author":"Nori Harsha","year":"2023","unstructured":"Harsha Nori, Nicholas King, Scott Mayer McKinney, Dean Carignan, and Eric Horvitz. 2023. Capabilities of gpt-4 on medical challenge problems. arXiv preprint arXiv:2303.13375 (2023)."},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"e_1_3_2_1_34_1","volume-title":"Proceedings of the 37th International Conference on Machine Learning, (ICML) (Proceedings of Machine Learning Research). PMLR.","author":"Real Esteban","unstructured":"Esteban Real, Chen Liang, David R. So, and Quoc V. Le. 2020. AutoML-Zero: Evolving Machine Learning Algorithms From Scratch. In Proceedings of the 37th International Conference on Machine Learning, (ICML) (Proceedings of Machine Learning Research). PMLR."},{"key":"e_1_3_2_1_35_1","volume-title":"Jordan S Ellenberg, Pengming Wang, Omar Fawzi, et al.","author":"Romera-Paredes Bernardino","year":"2023","unstructured":"Bernardino Romera-Paredes, Mohammadamin Barekatain, Alexander Novikov, Matej Balog, M Pawan Kumar, Emilien Dupont, Francisco JR Ruiz, Jordan S Ellenberg, Pengming Wang, Omar Fawzi, et al. 2023. Mathematical discoveries from program search with large language models. Nature (2023), 1--3."},{"key":"e_1_3_2_1_36_1","volume-title":"Jordan S Ellenberg, Pengming Wang, Omar Fawzi, et al.","author":"Romera-Paredes Bernardino","year":"2023","unstructured":"Bernardino Romera-Paredes, Mohammadamin Barekatain, Alexander Novikov, Matej Balog, M Pawan Kumar, Emilien Dupont, Francisco JR Ruiz, Jordan S Ellenberg, Pengming Wang, Omar Fawzi, et al. 2023. Mathematical discoveries from program search with large language models. Nature (2023), 1--3."},{"key":"e_1_3_2_1_37_1","volume-title":"2nd International Conference on Learning Representations (ICLR).","author":"Szegedy Christian","year":"2014","unstructured":"Christian Szegedy, Wojciech Zaremba, Ilya Sutskever, Joan Bruna, Dumitru Erhan, Ian J. Goodfellow, and Rob Fergus. 2014. Intriguing properties of neural networks. In 2nd International Conference on Learning Representations (ICLR)."},{"key":"e_1_3_2_1_38_1","volume-title":"Xunzhu Tang, Shing-Chi Cheung, Jacques Klein, and Tegawend\u00e9 F Bissyand\u00e9.","author":"Tian Haoye","year":"2023","unstructured":"Haoye Tian, Weiqi Lu, Tsz On Li, Xunzhu Tang, Shing-Chi Cheung, Jacques Klein, and Tegawend\u00e9 F Bissyand\u00e9. 2023. Is ChatGPT the Ultimate Programming Assistant-How far is it? arXiv preprint arXiv:2304.11938 (2023)."},{"key":"e_1_3_2_1_39_1","volume-title":"AdaShield: Safeguarding Multimodal Large Language Models from Structure-based Attack via Adaptive Shield Prompting. CoRR","author":"Wang Yu","year":"2024","unstructured":"Yu Wang, Xiaogeng Liu, Yu Li, Muhao Chen, and Chaowei Xiao. 2024. AdaShield: Safeguarding Multimodal Large Language Models from Structure-based Attack via Adaptive Shield Prompting. CoRR (2024)."},{"key":"e_1_3_2_1_40_1","volume-title":"Evolutionary Computation in the Era of Large Language Model: Survey and Roadmap. arXiv preprint arXiv:2401.10034","author":"Wu Xingyu","year":"2024","unstructured":"Xingyu Wu, Sheng-hao Wu, Jibin Wu, Liang Feng, and Kay Chen Tan. 2024. Evolutionary Computation in the Era of Large Language Model: Survey and Roadmap. arXiv preprint arXiv:2401.10034 (2024)."},{"key":"e_1_3_2_1_41_1","volume-title":"Generalizable Black-Box Adversarial Attack with Meta Learning. CoRR abs\/2301.00364","author":"Yin Fei","year":"2023","unstructured":"Fei Yin, Yong Zhang, Baoyuan Wu, Yan Feng, Jingyi Zhang, Yanbo Fan, and Yujiu Yang. 2023. Generalizable Black-Box Adversarial Attack with Meta Learning. CoRR abs\/2301.00364 (2023). arXiv:2301.00364"},{"key":"e_1_3_2_1_42_1","volume-title":"GPT-NAS: Neural Architecture Search with the Generative Pre-Trained Model. arXiv preprint arXiv:2305.05351","author":"Yu Caiyang","year":"2023","unstructured":"Caiyang Yu, Xianggen Liu, Chenwei Tang, Wentao Feng, and Jiancheng Lv. 2023. GPT-NAS: Neural Architecture Search with the Generative Pre-Trained Model. arXiv preprint arXiv:2305.05351 (2023)."},{"key":"e_1_3_2_1_43_1","volume-title":"AutoML-GPT: Automatic Machine Learning with GPT. arXiv preprint arXiv:2305.02499","author":"Zhang Shujian","year":"2023","unstructured":"Shujian Zhang, Chengyue Gong, Lemeng Wu, Xingchao Liu, and Mingyuan Zhou. 2023. AutoML-GPT: Automatic Machine Learning with GPT. arXiv preprint arXiv:2305.02499 (2023)."},{"key":"e_1_3_2_1_44_1","unstructured":"Wayne Xin Zhao Kun Zhou Junyi Li Tianyi Tang Xiaolei Wang Yupeng Hou Yingqian Min Beichen Zhang Junjie Zhang Zican Dong et al. 2023. A survey of large language models. arXiv preprint arXiv:2303.18223 (2023)."},{"key":"e_1_3_2_1_45_1","volume-title":"Can GPT-4 Perform Neural Architecture Search? arXiv preprint arXiv:2304.10970","author":"Zheng Mingkai","year":"2023","unstructured":"Mingkai Zheng, Xiu Su, Shan You, Fei Wang, Chen Qian, Chang Xu, and Samuel Albanie. 2023. Can GPT-4 Perform Neural Architecture Search? arXiv preprint arXiv:2304.10970 (2023)."},{"key":"e_1_3_2_1_46_1","volume-title":"Ziwen Han, Keiran Paster, Silviu Pitis, Harris Chan, and Jimmy Ba.","author":"Zhou Yongchao","year":"2022","unstructured":"Yongchao Zhou, Andrei Ioan Muresanu, Ziwen Han, Keiran Paster, Silviu Pitis, Harris Chan, and Jimmy Ba. 2022. Large language models are human-level prompt engineers. arXiv preprint arXiv:2211.01910 (2022)."}],"event":{"name":"GECCO '24 Companion: Genetic and Evolutionary Computation Conference Companion","location":"Melbourne VIC Australia","acronym":"GECCO '24 Companion","sponsor":["SIGEVO ACM Special Interest Group on Genetic and Evolutionary Computation"]},"container-title":["Proceedings of the Genetic and Evolutionary Computation Conference Companion"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3638530.3664121","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3638530.3664121","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T00:06:12Z","timestamp":1750291572000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3638530.3664121"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,7,14]]},"references-count":45,"alternative-id":["10.1145\/3638530.3664121","10.1145\/3638530"],"URL":"https:\/\/doi.org\/10.1145\/3638530.3664121","relation":{},"subject":[],"published":{"date-parts":[[2024,7,14]]},"assertion":[{"value":"2024-08-01","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}