美文网首页
[论文阅读笔记]ADVERSARIAL EXAMPLES IN

[论文阅读笔记]ADVERSARIAL EXAMPLES IN

作者: wangxiaoguang | 来源:发表于2020-03-27 22:00 被阅读0次

    论文题目:A DVERSARIAL EXAMPLES IN THE PHYSICAL WORLD
    论文地址:https://arxiv.org/abs/1607.02533

    BIM

    \boldsymbol{X}_{0}^{a d v}=\boldsymbol{X}, \quad \boldsymbol{X}_{N+1}^{a d v}=\operatorname{Clip}_{X, \epsilon}\left\{\boldsymbol{X}_{N}^{a d v}+\alpha \operatorname{sign}\left(\nabla_{X} J\left(\boldsymbol{X}_{N}^{a d v}, y_{t r u e}\right)\right)\right\}
    Clip表示剪辑图像(像素的值),\epsilon确保每一次剪辑后的像素值在原图像的\epsilon-neighbourhood中,实验中,\alpha=1

    ILCM

    \boldsymbol{X}_{0}^{a d v}=\boldsymbol{X}, \quad \boldsymbol{X}_{N+1}^{a d v}=\operatorname{Clip}_{X, \epsilon}\left\{\boldsymbol{X}_{N}^{a d v}-\alpha \operatorname{sign}\left(\nabla_{X} J\left(\boldsymbol{X}_{N}^{a d v}, y_{L L}\right)\right)\right\}
    y_{LL}为最不可能类别的标签,这相当于目标攻击。

    参考:

    https://www.jianshu.com/p/2f3b15617236

    相关文章

      网友评论

          本文标题:[论文阅读笔记]ADVERSARIAL EXAMPLES IN

          本文链接:https://www.haomeiwen.com/subject/etnruhtx.html