基于离散余弦变换的快速对抗训练方法
王晓淼,张玉金,张涛,田瑾,吴飞

Fast adversarial training method based on discrete cosine transform
Xiaomiao WANG,Yujin ZHANG,Tao ZHANG,Jin TIAN,Fei WU
表 1 使用ResNet18对CIFAR-10进行测试时的模型鲁棒精度
Tab.1 Test robustness on CIFAR-10 database using ResNet18 %
方法模型PcleanProbust
PGD-10PGD-20PGD-50C&WAuto-Attack
FGSM-RS[10]最好73.8142.3141.5541.2639.8437.07
FGSM-RS[10]最后83.820.090.040.020.000.00
FGSM-CKPT[12]最好90.2941.9639.8439.1541.1337.15
FGSM-CKPT[12]最后90.2941.9639.8439.1541.1337.15
FGSM-GA[11]最好83.9649.2347.5746.8947.4643.45
FGSM-GA[11]最后84.4348.6746.6646.0846.7542.63
Free-AT[12]最好80.3847.1045.8545.6244.4242.17
Free-AT[12]最后80.7545.8244.8244.4843.7341.17
本文方法最好83.3051.8650.6150.1549.6546.42
本文方法最后83.7651.5550.1649.8449.6846.21