Abstract: Due to the exponential disparity in the magnitude of high- and low-frequency components in the image frequency domain, existing frequency-domain enhancement methods for adversarial examples ...
Abstract: Adversarial examples (AEs) are typical model evasion attacks and security threats in deep neural networks (DNNs). One of the countermeasures is adversarial training (AT), and it trains DNNs ...