Synthesizing Robust Adversarial Examples
Anish Athalye*, Logan Engstrom*, Andrew Ilyas*, Kevin Kwok
Synthesizing Robust Adversarial Examples Anish Athalye*, Logan - - PowerPoint PPT Presentation
Synthesizing Robust Adversarial Examples Anish Athalye*, Logan Engstrom*, Andrew Ilyas*, Kevin Kwok Standard Adversarial Examples Given image x ; target class y Maximize with projected gradient descent: Standard Adversarial Examples Standard
Anish Athalye*, Logan Engstrom*, Andrew Ilyas*, Kevin Kwok
Given image x; target class y Maximize with projected gradient descent:
Given image x; target class y Maximize with projected gradient descent: What happens when we transform the images?
Given image x; target class y; distribution of transformations T Maximize expectation over transformation: What happens when we transform the images?
Euclidean LAB distance: Lagrangian Relaxation: Law of Large Numbers:
Bundle everything into the transformation: