学习笔记:【VALSE短教程】《Adversarial Attack and Defense》

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》

视频地址

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第1张图片

1、White-box attacks

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第2张图片
Direction I
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第3张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第4张图片
论文地址:

EXPLAINING AND HARNESSING ADVERSARIAL EXAMPLES
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第5张图片
论文地址:

ADVERSARIAL EXAMPLES IN THE PHYSICAL WORLD

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第6张图片
论文地址:

Towards Deep Learning Models Resistant to Adversarial Attacks

Direction II
分错条件下找到扰动最小的对抗样本。

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第7张图片
论文地址:

DeepFool: a simple and accurate method to fool deep neural networks

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第8张图片

论文地址:

Towards Evaluating the Robustness of Neural Networks

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第9张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第10张图片

2、Black-box Attack

在这里插入图片描述
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第11张图片

1、Transferability-based Attack

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第12张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第13张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第14张图片

论文地址:

Boosting Adversarial Attacks with Momentum

NESTEROV ACCELERATED GRADIENT AND SCALE INVARIANCE FOR ADVERSARIAL ATTACKS

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第15张图片

论文地址:

Towards Understanding and Improving the Transferability of Adversarial Examples in Deep Neural Networks

Evading Defenses to Transferable Adversarial Examples by Translation-Invariant Attacks

Improving Transferability of Adversarial Examples with Input Diversity

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第16张图片
论文地址:

SKIP CONNECTIONS MATTER: ON THE TRANSFERABILITY OF ADVERSARIAL EXAMPLES GENERATED WITH RESNETS

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第17张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第18张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第19张图片

2、Query-based Adversarial Attack

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第20张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第21张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第22张图片

论文地址:

DECISION-BASED ADVERSARIAL ATTACKS: RELIABLE ATTACKS AGAINST BLACK-BOX MACHINE LEARNING MODELS

A Ray Searching Method for Hard-label Adversarial Attack

ZOO: Zeroth Order Optimization Based Black-box Attacks to Deep Neural Networks without Training Substitute Models

Auto ZOOM: Autoencoder-based Zeroth Order Optimization Method for Attacking Black-box Neural Networks

Square Attack: a query-efficient black-box adversarial attack via random search

Black-box Adversarial Attacks with Limited Queries and Information

N ATTACK:Learning the Distributions of Adversarial Examples for an Improved Black-Box Attack on Deep Neural Networks

Improving Query Efficiency of Black-box Adversarial Attack

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第23张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第24张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第25张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第26张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第27张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第28张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第29张图片

论文地址:

Adversarial Patch

Robust Physical-World Attacks on Deep Learning Visual Classification

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第30张图片

论文地址:

Adversarial Camouflage: Hiding Physical-World Attacks with Natural Styles

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第31张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第32张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第33张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第34张图片

论文地址:

BadNets: Identifying Vulnerabilities in the Machine Learning Model Supply Chain

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第35张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第36张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第37张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第38张图片
论文地址:

Towards Deep Learning Models Resistant to Adversarial Attacks

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第39张图片

论文地址:

On the Convergence and Robustness of Adversarial Training

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第40张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第41张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第42张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第43张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第44张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第45张图片

论文地址:

Adversarial Weight Perturbation HelpsRobust Generalization

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第46张图片
论文地址:

Visualizing the Loss Landscape of Neural Nets

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第47张图片
论文地址:

Understanding Adversarial Robustness Through Loss Landscape Geometries

INTERPRETING ADVERSARIAL ROBUSTNESS:A VIEW FROM DECISION SURFACE IN INPUT SPACE

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第48张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第49张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第50张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第51张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第52张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第53张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第54张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第55张图片
论文地址:

Theoretically Principled Trade-off between Robustness and Accuracy

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第56张图片

论文地址:

IMPROVING ADVERSARIAL ROBUSTNESS REQUIRES REVISITING MISCLASSIFIED EXAMPLES

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第57张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第58张图片
在这里插入图片描述
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第59张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第60张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第61张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第62张图片
论文地址:

Adversarial Neuron Pruning Purifies Backdoored Deep Models
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第63张图片
论文地址:

Spectral Signatures in Backdoor Attacks

DEEP PARTITION AGGREGATION:PROVABLE DEFENSES AGAINST GENERAL POISONING
ATTACKS

Data Poisoning against Differentially-Private Learners: Attacks and Defenses

STRONG DATA AUGMENTATION SANITIZES POISONING AND BACKDOOR ATTACKS WITHOUT AN ACCURACY TRADEOFF

Neural Cleanse: Identifying and Mitigating Backdoor Attacks in Neural Networks

Fine-Pruning: Defending Against Backdooring Attacks on Deep Neural Networks

REFIT: A Unified Watermark Removal Framework For Deep Learning Systems With Limited Data

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第64张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第65张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第66张图片

论文地址:

Feature Denoising for Improving Adversarial Robustness

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第67张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第68张图片

论文地址:

Adversarial Examples Improve Image Recognition

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第69张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第70张图片

论文地址:

Improving Adversarial Robustness via Channel-wise Activation Suppressing

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第71张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第72张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第73张图片

论文地址:

Implicit Euler Skip Connections: Enhancing Adversarial Robustness via Numerical Stability

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第74张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第75张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第76张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第77张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第78张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第79张图片

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第80张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第81张图片
论文地址:

Unlearnable Examples: Making Personal Data Unexploitable

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第82张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第83张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第84张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第85张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第86张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第87张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第88张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第89张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第90张图片

论文地址:

Unadversarial Examples: Designing Objects for Robust Vision

学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第91张图片
学习笔记:【VALSE短教程】《Adversarial Attack and Defense》_第92张图片

你可能感兴趣的:(python,计算机视觉,人工智能,深度学习,神经网络)