s-huu / TurningWeaknessIntoStrength

Official implementation for paper: A New Defense Against Adversarial Images: Turning a Weakness into a Strength
37 stars 10 forks source link

why input data is not normalized before doing attack? #7

Closed vietvo89 closed 3 years ago

vietvo89 commented 3 years ago

Hi.

I have found the transform code before prediction.

Thanks