Abstract
Almost all current adversarial attacks of CNN classifiers rely on information derived from the output layer of the network. This work presents a new adversarial attack based on the modeling and exploitation of class-wise and layer-wise deep feature distributions. We …
Original language | English (US) |
---|---|
Journal | arXiv preprint arXiv:2004.12519 |
State | Published - 2020 |
Externally published | Yes |