Open Access iconOpen Access

ARTICLE

Enhancing the Transferability of Adversarial Samples through Frequency-Domain Attenuation

Li Peng1,2, Xiangbing Li1,2, Kun Zou1, Yong Liu1,2,*, Haibo Huang1

1 School of Artificial Intelligence, Hubei University of Automotive Technology, Shiyan, China
2 Shiyan Key Laboratory of Electromagnetic Induction and Energy-Saving Technology, Hubei University of Automotive Technology, Shiyan, China

* Corresponding Author: Yong Liu. Email: email

(This article belongs to the Special Issue: Deep Learning for Next-Generation Cybersecurity: Architectures, Robustness and Applications)

Computers, Materials & Continua 2026, 88(3), 40 https://doi.org/10.32604/cmc.2026.082629

Abstract

In recent years, the transferability of adversarial examples has attracted significant attention. To improve the effectiveness of black-box attacks, a frequency-domain decay constraint is introduced, inspired by weight decay and regularization techniques commonly employed during model training. By treating adversarial perturbations as inputs in an optimization process, this constraint aims to mitigate the excessive reliance on low-frequency components during adversarial example generation, thereby enhancing transferability. Fourier heatmaps are utilized to analyze the sensitivity of input samples, enabling a decomposition of the frequency spectrum into low-frequency and high-frequency components. Based on this analysis, low-frequency attenuation is applied in the Fourier domain to suppress dominant low-frequency information, followed by reconstruction of the perturbed inputs. The proposed frequency-domain attenuation strategy enjoys good compatibility with existing algorithms, and increases the attack success rate by approximately 1.53%–8.68% relative to the original method. Extensive experimental results show that the proposed method surpasses existing iterative attack methods and generates more transferable adversarial examples, demonstrating its effectiveness and superiority.

Keywords

Adversarial transferability; black-box attack; adversarial examples; frequency domain attenuation

Cite This Article

APA Style
Peng, L., Li, X., Zou, K., Liu, Y., Huang, H. (2026). Enhancing the Transferability of Adversarial Samples through Frequency-Domain Attenuation. Computers, Materials & Continua, 88(3), 40. https://doi.org/10.32604/cmc.2026.082629
Vancouver Style
Peng L, Li X, Zou K, Liu Y, Huang H. Enhancing the Transferability of Adversarial Samples through Frequency-Domain Attenuation. Comput Mater Contin. 2026;88(3):40. https://doi.org/10.32604/cmc.2026.082629
IEEE Style
L. Peng, X. Li, K. Zou, Y. Liu, and H. Huang, “Enhancing the Transferability of Adversarial Samples through Frequency-Domain Attenuation,” Comput. Mater. Contin., vol. 88, no. 3, pp. 40, 2026. https://doi.org/10.32604/cmc.2026.082629



cc Copyright © 2026 The Author(s). Published by Tech Science Press.
This work is licensed under a Creative Commons Attribution 4.0 International License , which permits unrestricted use, distribution, and reproduction in any medium, provided the original work is properly cited.
  • 403

    View

  • 63

    Download

  • 0

    Like

Share Link