JOURNAL ARTICLE

Generating Adversarial Examples with Adversarial Networks

Abstract

Deep neural networks (DNNs) have been found to be vulnerable to adversarial examples resulting from adding small-magnitude perturbations to inputs. Such adversarial examples can mislead DNNs to produce adversary-selected results. Different attack strategies have been proposed to generate adversarial examples, but how to produce them with high perceptual quality and more efficiently requires more research efforts. In this paper, we propose AdvGAN to generate adversarial exam- ples with generative adversarial networks (GANs), which can learn and approximate the distribution of original instances. For AdvGAN, once the generator is trained, it can generate perturbations efficiently for any instance, so as to potentially accelerate adversarial training as defenses. We apply Adv- GAN in both semi-whitebox and black-box attack settings. In semi-whitebox attacks, there is no need to access the original target model after the generator is trained, in contrast to traditional white-box attacks. In black-box attacks, we dynamically train a distilled model for the black-box model and optimize the generator accordingly. Adversarial examples generated by AdvGAN on different target models have high attack success rate under state-of-the-art defenses compared to other attacks. Our attack has placed the first with 92.76% accuracy on a public MNIST black-box attack challenge.

Keywords:
Adversarial system Computer science Adversary Generator (circuit theory) MNIST database Black box Deep neural networks Artificial intelligence Artificial neural network State (computer science) Key (lock) Theoretical computer science Computer security Machine learning Algorithm Power (physics)

Metrics

749
Cited By
52.42
FWCI (Field Weighted Citation Impact)
26
Refs
1.00
Citation Normalized Percentile
Is in top 1%
Is in top 10%

Citation History

Topics

Adversarial Robustness in Machine Learning
Physical Sciences →  Computer Science →  Artificial Intelligence
Anomaly Detection Techniques and Applications
Physical Sciences →  Computer Science →  Artificial Intelligence

Related Documents

JOURNAL ARTICLE

Generating Adversarial Examples With Distance Constrained Adversarial Imitation Networks

Pengfei TangWenjie WangJian LouLi Xiong

Journal:   IEEE Transactions on Dependable and Secure Computing Year: 2021 Vol: 19 (6)Pages: 4145-4155
JOURNAL ARTICLE

Defending against and generating adversarial examples together with generative adversarial networks

Ying WangXiao LiaoWei CuiYang Yang

Journal:   Scientific Reports Year: 2025 Vol: 15 (1)Pages: 12994-12994
JOURNAL ARTICLE

Generating Counterfactual Examples through Generating Adversarial Examples

Hyungyu LeeDahuin Jung

Journal:   Journal of KIISE Year: 2022 Vol: 49 (12)Pages: 1132-1142
© 2026 ScienceGate Book Chapters — All rights reserved.