美文网首页
[论文阅读笔记]ADVERSARIAL EXAMPLES IN

[论文阅读笔记]ADVERSARIAL EXAMPLES IN

作者: wangxiaoguang | 来源:发表于2020-03-27 22:00 被阅读0次

论文题目:A DVERSARIAL EXAMPLES IN THE PHYSICAL WORLD
论文地址:https://arxiv.org/abs/1607.02533

BIM

\boldsymbol{X}_{0}^{a d v}=\boldsymbol{X}, \quad \boldsymbol{X}_{N+1}^{a d v}=\operatorname{Clip}_{X, \epsilon}\left\{\boldsymbol{X}_{N}^{a d v}+\alpha \operatorname{sign}\left(\nabla_{X} J\left(\boldsymbol{X}_{N}^{a d v}, y_{t r u e}\right)\right)\right\}
Clip表示剪辑图像(像素的值),\epsilon确保每一次剪辑后的像素值在原图像的\epsilon-neighbourhood中,实验中,\alpha=1

ILCM

\boldsymbol{X}_{0}^{a d v}=\boldsymbol{X}, \quad \boldsymbol{X}_{N+1}^{a d v}=\operatorname{Clip}_{X, \epsilon}\left\{\boldsymbol{X}_{N}^{a d v}-\alpha \operatorname{sign}\left(\nabla_{X} J\left(\boldsymbol{X}_{N}^{a d v}, y_{L L}\right)\right)\right\}
y_{LL}为最不可能类别的标签,这相当于目标攻击。

参考:

https://www.jianshu.com/p/2f3b15617236

相关文章

网友评论

      本文标题:[论文阅读笔记]ADVERSARIAL EXAMPLES IN

      本文链接:https://www.haomeiwen.com/subject/etnruhtx.html