TL;DR该研究提出了一种名为 Deep Pursuit 的全局优化方法,通过将前向传播网络的每一层重新框架为一个稀疏编码问题来解决深度神经网络的对抗性攻击问题,其实现稳定且在对抗性噪声下表现更优。
Abstract
Despite their unmatched performance, deep neural networks remain susceptible
to targeted attacks by nearly imperceptible levels of adversarial noise. While
the underlying cause of this sensitivity is not well understood, theoretical
analyses can be simplified by reframing each layer of