no code implementations • 25 Feb 2023 • Zhongyi Guo, Keji Han, Yao Ge, Wei Ji, Yun Li
In this paper, AAP is defined as the recognition of three signatures, i. e., {\em attack algorithm}, {\em victim model} and {\em hyperparameter}.
1 code implementation • ICCV 2023 • Yao Ge, Yun Li, Keji Han, Junyi Zhu, Xianzhong Long
However, they are susceptible to adversarial examples, which are generated by adding adversarial perturbations to original data.
no code implementations • ICML Workshop AML 2021 • Keji Han, Yun Li, Songcan Chen
Many works have demonstrated that deep neural networks (DNNs) are vulnerable to adversarial examples.
no code implementations • 11 Oct 2020 • Keji Han, Yun Li, Xianzhong Long, Yao Ge
Many works demonstrate that deep learning system is vulnerable to adversarial attack.