@misc{indiciae52fa7e344103, title = {Stateful Defenses for Machine Learning Models Are Not Yet Secure Against Black-box Attacks}, author = {Ryan Feng and Ashish Hooda and Neal Mangaokar and Kassem Fawaz and Somesh Jha and Atul Prakash}, year = {2023}, doi = {10.1145/3576915.3623116}, url = {https://arxiv.org/abs/2303.06280}, note = {Source identifier: 2303.06280} }