2020
DOI: 10.48550/arxiv.2005.07998
|View full text |Cite
Preprint
|
Sign up to set email alerts
|

Encryption Inspired Adversarial Defense for Visual Classification

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1

Citation Types

0
2
0

Year Published

2020
2020
2020
2020

Publication Types

Select...
1

Relationship

1
0

Authors

Journals

citations
Cited by 1 publication
(2 citation statements)
references
References 0 publications
0
2
0
Order By: Relevance
“…In experiments, the proposed defense is confirmed to outperform state-of-the-art adversarial defenses. A part of this work (Pixel Shuffling) was introduced in [28]. We not only evaluate Pixel Shuffling under both black-box and white-box attacks with different metrics, and adaptive attacks with key estimation approaches but also introduce other novel algorithms in this paper.…”
Section: Clean Imagementioning
confidence: 99%
See 1 more Smart Citation
“…In experiments, the proposed defense is confirmed to outperform state-of-the-art adversarial defenses. A part of this work (Pixel Shuffling) was introduced in [28]. We not only evaluate Pixel Shuffling under both black-box and white-box attacks with different metrics, and adaptive attacks with key estimation approaches but also introduce other novel algorithms in this paper.…”
Section: Clean Imagementioning
confidence: 99%
“…In the case of FFX Encryption, there is an additional parameter, password P , for format-preserving encryption. Although one of the three algorithms (Pixel Shuffling) was discussed in our previous work [28], we extend the evaluation of Pixel Shuffling with various white-box and black-box attacks under different metrics and adaptive attacks with key estimation in this paper.…”
Section: Three Proposed Block-wise Transformationsmentioning
confidence: 99%