Research Article

A Sparsity-Limitation-Based High-Dimensional Distribution Searching Algorithm for Adversarial Attack

Table 2

Transferability of SparseAdv.

MobileNet-v2ResNet-50VGG-16GoogleNet

MobileNet-v295.3557.9053.2615.88
ResNet-5076.5297.2690.1989.66
VGG-1672.8350.2496.3237.85
GoogleNet73.2969.1884.6699.02

The transferability is represented by attack successful rate (%) when the generated adversarial examples are fed into different deep learning models.