gongzhitaao / adversarial-classifier

It turns out that adversarial and clean data are not twins, not at all.
https://arxiv.org/abs/1704.04960
MIT License
20 stars 6 forks source link