基于离散余弦变换的快速对抗训练方法
|
王晓淼,张玉金,张涛,田瑾,吴飞
|
Fast adversarial training method based on discrete cosine transform
|
Xiaomiao WANG,Yujin ZHANG,Tao ZHANG,Jin TIAN,Fei WU
|
|
表 3 使用ResNet18对CIFAR-100进行测试时的模型鲁棒精度 |
Tab.3 Test robustness on CIFAR-100 database using ResNet18 % |
|
方法 | 模型 | Pclean | Probust | PGD-10 | PGD-20 | PGD-50 | C&W | Auto-Attack | FGSM-RS[10] | 最好 | 49.85 | 22.47 | 22.01 | 21.82 | 20.55 | 18.29 | FGSM-RS[10] | 最后 | 60.55 | 0.25 | 0.19 | 0.25 | 0.00 | 0.00 | FGSM-CKPT[12] | 最好 | 60.93 | 16.58 | 15.47 | 15.19 | 16.40 | 14.17 | FGSM-CKPT[12] | 最后 | 60.93 | 16.69 | 15.61 | 15.24 | 16.60 | 14.34 | FGSM-GA[11] | 最好 | 54.35 | 22.93 | 22.36 | 22.20 | 21.20 | 18.80 | FGSM-GA[11] | 最后 | 55.10 | 20.04 | 19.13 | 18.84 | 18.96 | 16.45 | Free-AT[12] | 最好 | 52.49 | 24.07 | 23.52 | 23.36 | 21.66 | 19.47 | Free-AT[12] | 最后 | 52.63 | 22.86 | 22.32 | 22.16 | 20.68 | 18.57 | 本文方法 | 最好 | 53.77 | 25.92 | 25.22 | 24.82 | 24.07 | 19.28 | 本文方法 | 最后 | 54.08 | 25.91 | 25.00 | 24.67 | 23.82 | 19.16 |
|
|
|