Closed swsuggs closed 1 year ago
@swsuggs is there a good reason not to modify the attack parameters in the default configs to whatever is most appropriate?
Finding them could take days of testing, and performers (namely MIT) are interested in getting the corrections before the submission deadline
Corrections: scale the patch to [0,1], and find the correct poison indices.
Note: running the current configs will return low attack success because the attack parameters are tuned for a slightly different resnet version.