Abstract
Although deep neural networks have been successful in image classification,they are prone to adversarial attacks. To generate misclassified inputs, therehas emerged a wide variety of techniques, such as black- and whitebox testingof neural networks. In this paper, we present DeepSearch, a novelblackbox-fuzzing technique for image classifiers. Despite its simplicity,DeepSearch is shown to be more effective in finding adversarial examples thanclosely related black- and whitebox approaches. DeepSearch is additionally ableto generate the most subtle adversarial examples in comparison to theseapproaches.
Quick Read (beta)
loading the full paper ...