JOURNAL ARTICLE

Harmonizing Transferability and Imperceptibility: A Novel Ensemble Adversarial Attack

Rui ZhangHui XiaZi KangZhengheng LiYu DuMingyang Gao

Year: 2024 Journal:   IEEE Internet of Things Journal Vol: 11 (15)Pages: 25625-25636   Publisher: Institute of Electrical and Electronics Engineers

Abstract

Contemporary research on adversarial attacks in Intelligent Internet of Things focuses on balancing two key aspects: transferability and imperceptibility. However, achieving a balance between these aspects can be challenging. To address this, we introduce an ensemble adversarial attack method based on model interpretability. This method aims to maintain the transferability of attacks while ensuring a high degree of imperceptibility. Our method generates adversarial perturbations by leveraging information from multiple models, thereby enhancing the transferability of adversarial examples. We also increase the aggressiveness of these examples by accentuating the differences in class activation mappings between adversarial and benign images. During the perturbation optimization process, class activation mappings are utilized to generate more selective perturbations, improving the imperceptibility of the adversarial examples. Experimental results demonstrate that our method effectively balances transferability and imperceptibility. Specifically, for 13 victim classifiers, compared to the most potent attack, VNIFGSM, among nine benchmark methods, OUR demonstrates a 10.31% increase in the mean of Attack Success Rate (mASR) in non-targeted attacks, and OUR's mASR increases by 9% in targeted attacks. Meanwhile, while OUR exhibits comparable attack performance to VNIFGSM, its imperceptibility demonstrates outstanding performance.

Keywords:
Transferability Adversarial system Computer science Interpretability Benchmark (surveying) Class (philosophy) Artificial intelligence Machine learning Data mining

Metrics

1
Cited By
0.64
FWCI (Field Weighted Citation Impact)
52
Refs
0.63
Citation Normalized Percentile
Is in top 1%
Is in top 10%

Citation History

Topics

Adversarial Robustness in Machine Learning
Physical Sciences →  Computer Science →  Artificial Intelligence
Anomaly Detection Techniques and Applications
Physical Sciences →  Computer Science →  Artificial Intelligence
Advanced Neural Network Applications
Physical Sciences →  Computer Science →  Computer Vision and Pattern Recognition

Related Documents

JOURNAL ARTICLE

Balancing Transferability and Imperceptibility for Adversarial Attacks

KANG Kai, WANG Jiabao, XU Kun

Journal:   DOAJ (DOAJ: Directory of Open Access Journals) Year: 2025
JOURNAL ARTICLE

Stochastic Variance Reduced Ensemble Adversarial Attack for Boosting the Adversarial Transferability

Yifeng XiongJiadong LinMin ZhangJohn E. HopcroftKun He

Journal:   2022 IEEE/CVF Conference on Computer Vision and Pattern Recognition (CVPR) Year: 2022 Pages: 14963-14972
JOURNAL ARTICLE

Improving adversarial transferability via adaptive ensemble attack with post-optimization

Yun ZhangYan Wo

Journal:   Knowledge-Based Systems Year: 2025 Vol: 326 Pages: 114079-114079
© 2026 ScienceGate Book Chapters — All rights reserved.