Alan-Qin / Transfer_attack_RAP

Boosting the Transferability of Adversarial Attacks with Reverse Adversarial Perturbation (NeurIPS 2022)
33 stars 0 forks source link

What are the source and victim models used in Tab.7 in the paper? #1

Closed GeorgeCarpenter closed 1 year ago

GeorgeCarpenter commented 1 year ago

Hi, we gonna reproduce the result in the paper. However, we don't know exactly what source and victim models used in Tab.7, since there only is one model in each column in Tab.7.

Thanks.

Alan-Qin commented 1 year ago

Hello George, I apologize for my delayed response. This is the source model.

image

These are victim models.

image

Zeyu

GeorgeCarpenter commented 1 year ago

Thanks.