技术栈

替代模型

Bosenya12
9 个月前
论文阅读·对抗生成网络·对抗性攻击·对抗样本·无数据·替代模型
【论文阅读】DaST: Data-free Substitute Training for Adversarial Attacks(2020)Machine learning models(机器学习模型) are vulnerable(容易受到) to adversarial examples(对抗样本). For the black-box setting(对于黑盒设置), current substitute attacks(目前替代攻击) need pre-trained models(预训练模型) to generate adversarial examples(生成对抗样本). However, pre-trained models(