Second-order adversarial attack and certifiable robustness

B Li, C Chen, W Wang, L Carin

We propose a powerful second-order attack method that outperforms existing attack methods on reducing the accuracy of state-of-the-art defense models based on adversarial training. The effectiveness of our attack method motivates an investigation of provable …
JournalarXiv preprint arXiv:1809.03113
StatePublished - 2018
