基于双重引导的目标对抗攻击方法
孙月,张兴兰

Targeted adversarial attack method based on dual guidance
Yue SUN,Xinglan ZHANG
表 2 不同攻击方法在CIFAR10数据集上的目标攻击成功率
Tab.2 Targeted ASRs of various attack methods on CIFAR10 dataset
攻击方法tASR/%
VGG16ResNet18Inv3DenseNetWideResNet平均
MIM100.0083.4593.6493.9794.4191.37
Auto-PGD100.0073.6886.6887.3387.7483.86
DIM99.6478.2283.7284.2784.9582.79
TIM83.6629.7126.8226.2029.0827.95
SIM99.5373.4781.5881.7481.2579.51
VMI-FGSM99.9282.6490.3091.3290.7288.75
DO-M-DI295.0955.1267.4668.2572.1265.74
DeCowA98.9368.7671.4074.8677.0873.03
IDAA99.0486.7790.7589.7891.7489.76
LOGIT99.7574.4978.1180.2885.2579.53
POTRIP93.2251.3253.5854.1755.6453.68
AdvGAN97.0839.6861.0870.2865.3459.10
本研究方法98.3193.5296.0197.0997.6696.07