WPEBA: A Novel Ensemble Black-Box Adversarial Attack for Visual Recognition Systems via Wavelet Packet Decomposition
Summary
Researchers developed WPEBA, a new type of adversarial attack (a method to trick visual recognition systems by adding subtle noise to images) that uses wavelet packet decomposition (breaking images into different frequency patterns) to fool AI models with very few queries (attempts to test the system). The attack combines multiple surrogate models (practice AI systems used to design the attack) and achieves a 99% success rate while remaining effective even against defended models and commercial APIs (pre-built services).
Classification
Affected Vendors
Related Issues
Original source: http://ieeexplore.ieee.org/document/11674285
First tracked: September 21, 2026 at 08:04 PM
Classified by LLM (prompt v3) · confidence: 92%