twosixlabs / armory

ARMORY Adversarial Robustness Evaluation Test Bed
MIT License
176 stars 67 forks source link

Sleeper agent fix #1863

Closed swsuggs closed 1 year ago

swsuggs commented 1 year ago

Corrections: scale the patch to [0,1], and find the correct poison indices.

Note: running the current configs will return low attack success because the attack parameters are tuned for a slightly different resnet version.

lcadalzo commented 1 year ago

@swsuggs is there a good reason not to modify the attack parameters in the default configs to whatever is most appropriate?

swsuggs commented 1 year ago

Finding them could take days of testing, and performers (namely MIT) are interested in getting the corrections before the submission deadline