BriefGPT.xyz
Apr, 2020
改进的图像 Wasserstein 攻击与防御
Improved Image Wasserstein Attacks and Defenses
HTML
PDF
J. Edward Hu, Adith Swaminathan, Hadi Salman, Greg Yang
TL;DR
本文研究了图像扰动的鲁棒性问题,提出了一种新的基于Wasserstein距离的威胁模型,并在此基础上探讨了更强的攻击和防御方法,最后发现当前的Wasserstein-robust模型在抵御真实世界中的扰动方面存在的局限性。
Abstract
robustness
against
image perturbations
bounded by a $\ell_p$ ball have been well-studied in recent literature. Perturbations in the real-world, however, rarely exhibit the pixel independence that $\ell_p$ threat
→