A New Defense Against Adversarial Images: Turning a Weakness into a Strength
Shengyuan Hu, Tao Yu, Chuan Guo, Wei-Lun Chao, Kilian Q. Weinberger
–Neural Information Processing Systems
While many techniques for detecting these attacks have been proposed, theyareeasily bypassed when theadversary hasfullknowledge of the detection mechanism and adapts the attack strategy accordingly. In this paper,we adopt anovel perspectiveand regard the omnipresence of adversarial perturbations asastrength rather thanaweakness.
Neural Information Processing Systems
Feb-14-2026, 03:26:40 GMT
- Country:
- North America
- United States
- Ohio (0.04)
- Texas > Dallas County
- Dallas (0.04)
- California > San Diego County
- San Diego (0.04)
- Canada
- Quebec > Montreal (0.04)
- British Columbia > Metro Vancouver Regional District
- Vancouver (0.15)
- United States
- Europe
- North America
- Industry:
- Information Technology > Security & Privacy (0.49)
- Government > Military (0.35)
- Technology: