Blurred-Dilated Method for Adversarial Attacks (Supplementary Material)
–Neural Information Processing Systems
Table S1 presents the structural details of Blurred-Dilated ResNet-20 (BD RN20) used on the CIFAR-10 dataset. Table S2 shows the structural details of Blurred-Dilated ResNet-56 (BD RN56) used on the CIFAR-100 dataset. We conduct more ablation studies to examine the key modification choices of our method. Notations are the same as Figure S1. Notations are the same as Figure S1.
Neural Information Processing Systems
Oct-9-2025, 05:39:11 GMT