Adversarial Examples Are Not Real Features.
Ang LiYifei WangYiwen GuoYisen WangPublished in: NeurIPS (2023)
Keyphrases
- distinctive features
- image features
- extracting features
- real world
- rich set
- salient features
- feature detection
- keypoints
- false positives
- prior knowledge
- feature vectors
- multiscale
- information retrieval
- machine learning
- low level
- classification accuracy
- co occurrence
- feature space
- training data
- key concepts
- invariant features
- website