基于离散余弦变换的快速对抗训练方法
王晓淼,张玉金,张涛,田瑾,吴飞

Fast adversarial training method based on discrete cosine transform
Xiaomiao WANG,Yujin ZHANG,Tao ZHANG,Jin TIAN,Fei WU
表 3 使用ResNet18对CIFAR-100进行测试时的模型鲁棒精度
Tab.3 Test robustness on CIFAR-100 database using ResNet18 %
方法模型PcleanProbust
PGD-10PGD-20PGD-50C&WAuto-Attack
FGSM-RS[10]最好49.8522.4722.0121.8220.5518.29
FGSM-RS[10]最后60.550.250.190.250.000.00
FGSM-CKPT[12]最好60.9316.5815.4715.1916.4014.17
FGSM-CKPT[12]最后60.9316.6915.6115.2416.6014.34
FGSM-GA[11]最好54.3522.9322.3622.2021.2018.80
FGSM-GA[11]最后55.1020.0419.1318.8418.9616.45
Free-AT[12]最好52.4924.0723.5223.3621.6619.47
Free-AT[12]最后52.6322.8622.3222.1620.6818.57
本文方法最好53.7725.9225.2224.8224.0719.28
本文方法最后54.0825.9125.0024.6723.8219.16