|国家预印本平台
首页|Harmonizing Intra-coherence and Inter-divergence in Ensemble Attacks for Adversarial Transferability

Harmonizing Intra-coherence and Inter-divergence in Ensemble Attacks for Adversarial Transferability

Harmonizing Intra-coherence and Inter-divergence in Ensemble Attacks for Adversarial Transferability

来源:Arxiv_logoArxiv
英文摘要

The development of model ensemble attacks has significantly improved the transferability of adversarial examples, but this progress also poses severe threats to the security of deep neural networks. Existing methods, however, face two critical challenges: insufficient capture of shared gradient directions across models and a lack of adaptive weight allocation mechanisms. To address these issues, we propose a novel method Harmonized Ensemble for Adversarial Transferability (HEAT), which introduces domain generalization into adversarial example generation for the first time. HEAT consists of two key modules: Consensus Gradient Direction Synthesizer, which uses Singular Value Decomposition to synthesize shared gradient directions; and Dual-Harmony Weight Orchestrator which dynamically balances intra-domain coherence, stabilizing gradients within individual models, and inter-domain diversity, enhancing transferability across models. Experimental results demonstrate that HEAT significantly outperforms existing methods across various datasets and settings, offering a new perspective and direction for adversarial attack research.

Lipo Wang、Youfang Lin、Jing Wang、Zhaoyang Ma、Zhihao Wu、Wang Lu、Xin Gao、Jinghang Yue、Taolin Zhang

计算技术、计算机技术

Lipo Wang,Youfang Lin,Jing Wang,Zhaoyang Ma,Zhihao Wu,Wang Lu,Xin Gao,Jinghang Yue,Taolin Zhang.Harmonizing Intra-coherence and Inter-divergence in Ensemble Attacks for Adversarial Transferability[EB/OL].(2025-05-02)[2025-07-02].https://arxiv.org/abs/2505.01168.点此复制

评论