git clone https://github.com/DSE-MSU/DeepRobust.git
cd DeepRobust
python setup.py install
Defense Methods | Defense Type | Apply Domain | Links |
---|---|---|---|
FGSM training | Adverserial Training | Image Classification | Towards Deep Learning Models Resistant to Adversarial Attacks |
Fast(an improved version of FGSM training) | Adverserial Training | Image Classification | Fast is better than free: Revisiting adversarial training |
PGD training | Adverserial Training | Image Classification | Intriguing Properties of Neural Networks |
YOPO(an improved version of PGD training) | Adverserial Training | Image Classification | You Only Propagate Once: Accelerating Adversarial Training via Maximal Principle |
TRADES | Adverserial Training | Image Classification | Theoretically Principled Trade-off between Robustness and Accuracy |
Thermometer Encoding | Gradient Masking | Image Classification | Thermometer Encoding:One Hot Way To Resist Adversarial Examples |
LID-based adversarial classifier | Detection | Image Classification | Characterizing Adversarial Subspaces Using Local Intrinsic Dimensionality |
- MNIST
- CIFAR-10
- ImageNet
- CNN
- ResNet(ResNet18, ResNet34, ResNet50)
- VGG
- DenseNet