iamaaditya / pixel-deflection

Deflecting Adversarial Attacks with Pixel Deflection
69 stars 21 forks source link

prediction unchanged #6

Open lynn901213 opened 4 years ago

lynn901213 commented 4 years ago

Hi, just tried your default test case on images/n02447366_00008562.png which should be predicted as 'badger'

Before and after defense, the top-5 probabilities stay the same Predicted Class badger:0.98 , skunk:0.02 , polecat:0.00 , weasel:0.00 wood_rabbit:0.00