[paper]IMPROVING ADVERSARIAL ROBUSTNESS REQUIRES REVISITING MISCLASSIFIED EXAMPLES

对抗训练是当前最有效的防御措施,经常被公式化为最小-最大优化问题。 where n is the number of training examples and l l l(·) is the classification loss, such as the commonly used cross-entropy (CE) loss.Recently, adversarial training wi
相关文章
相关标签/搜索