Research Article

FAPA: Transferable Adversarial Attacks Based on Foreground Attention

Table 4

Attack success rate of our method in the ViT model (%).

MethodPiT-BCaiT-S-24Visformer-STNT-SLeViT-256ConViT-BMean

PiT-BNull59.3072.6070.0064.0057.3064.64
CaiT-S-2452.50Null57.9071.6058.3076.5063.36
Visformer-S68.1058.70Null73.4071.2051.5064.58
Mean60.3059.0065.2571.6764.5061.77