Feature Denoising for Improving Adversarial Robustness

Preprint English OPEN
Xie, Cihang; Wu, Yuxin; van der Maaten, Laurens; Yuille, Alan; He, Kaiming;
  • Subject: Computer Science - Computer Vision and Pattern Recognition

Adversarial attacks to image classification systems present challenges to convolutional networks and opportunities for understanding them. This study suggests that adversarial perturbations on images lead to noise in the features constructed by these networks. Motivated... View more
