A method for recovering adversarial samples with both adversarial attack forensics and recognition accuracy.
Zigang ChenZhen WangYuening ZhouFan LiuYuhong LiuTao LengHaihua ZhuPublished in: Comput. Secur. (2024)
Keyphrases
- recognition accuracy
- high accuracy
- recognition rate
- pairwise
- detection method
- preprocessing
- neural network
- multi class
- probabilistic model
- computational cost
- data sets
- cost function
- active learning
- digital images
- multi agent
- similarity measure
- clustering method
- machine learning
- detection mechanism
- elastic graph matching