Văn bản này: Attack success rates (%) of adversarial attacks against twelve models. <sup>*</sup> indicates the white-box attacks.