Skip to main content

Table 10 The attack success rate (ASR(%)) and average query number (Avg.Q) under different L’s, here we fix the flow steps K as \(K=3\)

From: DTA: distribution transform-based attack for query-limited scenario

Metric

L=1

L=2

L=3

L=4

ASR(%)

81.40

81.98

81.82

81.77

Avg. Q

12.86

14.17

13.54

14.57