Toward Efficient Robust Training against Union of ℓ p Threat Models
–Neural Information Processing Systems
MSD) that also uses multi-step ( k = 50) adversarial attacks to generate adversaries for training. However, these methods, owing to their requirement of great number of adversarial training steps as compared to a regular setting for multi-step adversarial training procedure (10 steps), are computationally inefficient.
Neural Information Processing Systems
Aug-17-2025, 09:57:01 GMT
- Country:
- Asia > Middle East
- Jordan (0.04)
- North America > United States
- Maryland > Prince George's County > College Park (0.04)
- Asia > Middle East
- Genre:
- Research Report (1.00)
- Industry:
- Government > Military (0.35)
- Information Technology > Security & Privacy (0.49)
- Technology: