@misc{indiciae7f58c285cc9b, title = {NATTACK: Learning the Distributions of Adversarial Examples for an Improved Black-Box Attack on Deep Neural Networks}, author = {Yandong Li and Lijun Li and Liqiang Wang and Tong Zhang and Boqing Gong}, year = {2019}, url = {https://arxiv.org/abs/1905.00441}, note = {Source identifier: 1905.00441} }