STDatav2: Accessing Efficient Black-Box Stealing for Adversarial Attacks

Summary

This study enhances surrogate model training by using both synthesized and proxy data to prevent mode collapse. A new self-conditional framework ensures data diversity and class-specific constraints for improved black-box model stealing defenses.

Related Concept Videos

Stereotype Content Model02:16

Stereotype Content Model

The Stereotype Content Model (SCM) was first proposed by Susan Fiske and her colleagues (Fiske, Cuddy, Glick & Xu, 2002; see also Fiske, 2012 and Fiske, 2017). The SCM specifies that when someone encounters a new group, they will stereotype them based on two metrics: warmth—or that group’s perceived intent, and how likely they are to provide help or inflict harm—and competence—or their ability to carry out that objective. Depending on the warmth-competence...
13.9K