Skip to content
implementation starting point
Benchmarks: missing
Time to repro: a few hours
tf

Results & Benchmarks

Freshness tier: cold
Direct + Inferred Evidence

No concrete benchmark grounding is available yet. Treat the page as context or an implementation starting point only.

Decision-Based Adversarial Attacks: Reliable Attacks Against Black-Box Machine Learning Models is the primary contribution described in this paper.

Use This Implementation Because…

Confidence: high

bethgelab/foolbox is the strongest maintained implementation based on ranking signals. CI workflows are present. License is declared (MIT).

Open bethgelab/foolbox

Reproduction Risks

  • No repository-level red flags were detected, but paper-specific preprocessing and hyperparameter details may still be under-specified.
Evidence disclosure

Evidence graph: 3 refs, 3 links.

Utility signals: depth 55/100, grounding 75/100, status medium.

Implementation Comparison

Top 3 paths

Compare maintenance quality, reproducibility coverage, and evidence confidence before choosing a reproduction baseline.

bethgelab/foolbox
best maintained
Maintenance: Stale risk
Confidence: High
Reproducibility: Strong

Official implementation from Papers with Code · Repository link is mentioned in the paper metadata

Stars
2,966
Last push
Dec 3, 2025 (199d ago)
CIReleasesDependencies

Risk flags

  • No Docker setup
Maintenance: Stale
Confidence: Low
Reproducibility: Limited

Matched via arXiv identifier search · Strong overlap with paper title keywords

Stars
99
Last push
Dec 12, 2020 (2016d ago)

Risk flags

  • No push in 12+ months
  • No CI pipeline detected
  • No tagged releases
ermongroup/ODI
alternative
Maintenance: Stale
Confidence: Low
Reproducibility: Limited

Partial overlap with paper title keywords · Community adoption signal (51 stars)

Stars
51
Last push
Nov 2, 2020 (2056d ago)

Risk flags

  • No push in 12+ months
  • No CI pipeline detected
  • No tagged releases

Best implementation now

bethgelab/foolbox
Confidence: High
Reproducibility: Strong

A Python toolbox to create adversarial examples that fool neural networks in PyTorch, TensorFlow, and JAX

Stars: 2,966
Forks: 438
Last push: Dec 3, 2025
License: MIT
Official implementation from Papers with Code
Repository link is mentioned in the paper metadata
Community adoption signal (2966 stars)
License ✓
CI ✓
Deps ✓
Docker –
  • Selected bethgelab/foolbox as the strongest maintained implementation for new work.
  • Includes CI workflow signals.
  • Includes dependency/environment manifest signals.
  • Repository activity is within the last 24 months.

Reproduction readiness

Setup Required
Time to first repro: hours
Last checked: Jun 18, 2026

Dependencies pinned, manual setup needed

  • · bethgelab/foolbox has pyproject.toml but requires manual environment setup.
  • · Last push was 199 days ago — expect possible dependency version conflicts.
  • · No Dockerfile — you will set up the environment manually.
Open bethgelab/foolbox

Quick start

git clone https://github.com/bethgelab/foolbox.git
pip install -e .

No benchmark numbers could be verified. You will not be able to validate reproduction correctness against published numbers.

Additional implementations

No additional verified repositories beyond the primary recommendation.

These repositories had low-confidence matching signals and are hidden by default.

Hugging Face artifacts

No direct paper-linked artifacts were found. Showing strongest curated related artifacts for faster exploration.

Models

No trustworthy model matches right now.

Search models on Hugging Face

Datasets

No trustworthy dataset matches right now.

Search datasets on Hugging Face

Research context

Evaluation & Human Feedback Data

Open this paper in HFEPX to review benchmark signals, evaluation modes, and human-feedback protocol context.

Open in HFEPX

Need human evaluators for your AI research? Scale annotation with expert AI Trainers.