Open machanic opened 5 years ago
My concept of targeted attack means we want to set specific target class to let the attacker to make such adversarial image. Can universal perturbation do that and how?
Look around following fork. Uno-Takashi/Targeted-Universal-Adversarial-Perturbation: Extended Universal Adversarial Perturbation to targeted attack.
My concept of targeted attack means we want to set specific target class to let the attacker to make such adversarial image. Can universal perturbation do that and how?