A New Defense Against Adversarial Images: Turning a Weakness into a Strength
Shengyuan Hu, Tao Yu, Chuan Guo, Wei-Lun Chao, Kilian Q. Weinberger
–Neural Information Processing Systems
While many techniques for detecting these attacks have been proposed, theyareeasily bypassed when theadversary hasfullknowledge of the detection mechanism and adapts the attack strategy accordingly. In this paper,we adopt anovel perspectiveand regard the omnipresence of adversarial perturbations asastrength rather thanaweakness.
Neural Information Processing Systems
Feb-14-2026, 03:26:40 GMT
- Country:
- Europe
- North America
- Canada
- British Columbia > Metro Vancouver Regional District
- Vancouver (0.15)
- Quebec > Montreal (0.04)
- British Columbia > Metro Vancouver Regional District
- United States
- California > San Diego County
- San Diego (0.04)
- Ohio (0.04)
- Texas > Dallas County
- Dallas (0.04)
- California > San Diego County
- Canada
- Industry:
- Government > Military (0.35)
- Information Technology > Security & Privacy (0.49)
- Technology: