August 2019
Intermediate to advanced
342 pages
9h 35m
English
The approach followed in the generation of the synthetic dataset is of central importance in the attack strategy based on model substitution.
To understand it, you only need to consider the fact that, although, in principle, it is possible to carry out an indefinite (even infinite) number of different queries toward the targeted model (to verify the output that the target model generates in relation to the input contained in the individual queries), this approach is not viable from a practical point of view.
It is unsustainable in the first place because the high number of queries would make the adversarial attack easily detectable, but it is also unsustainable because we would increase the number of requests ...
Read now
Unlock full access