1 code implementation • 31 Jul 2022 • Jiutao Yue, Haofeng Li, Pengxu Wei, Guanbin Li, Liang Lin
Since the frequency masking may not only destroys the adversarial perturbations but also affects the sharp details in a clean image, we further develop an adversarial sample classifier based on the frequency domain of images to determine if applying the proposed mask module.