Pith. sign in

Adversarial Transformation Networks: Learning to Generate Adversarial Examples

2 Pith papers cite this work, alongside 223 external citations. Polarity classification is still indexing.

2 Pith papers citing it
223 external citations · Pith
abstract

Multiple different approaches of generating adversarial examples have been proposed to attack deep neural networks. These approaches involve either directly computing gradients with respect to the image pixels, or directly solving an optimization on the image pixels. In this work, we present a fundamentally new method for generating adversarial examples that is fast to execute and provides exceptional diversity of output. We efficiently train feed-forward neural networks in a self-supervised manner to generate adversarial examples against a target network or set of networks. We call such a network an Adversarial Transformation Network (ATN). ATNs are trained to generate adversarial examples that minimally modify the classifier's outputs given the original input, while constraining the new classification to match an adversarial target class. We present methods to train ATNs and analyze their effectiveness targeting a variety of MNIST classifiers as well as the latest state-of-the-art ImageNet classifier Inception ResNet v2.

citation-role summary

method 1

citation-polarity summary

fields

cs.CV 2

years

2026 1 2019 1

roles

method 1

polarities

use method 1

representative citing papers

Evolution Attack On Neural Networks

cs.CV · 2019-06-21 · unverdicted · novelty 2.0

Covariance matrix adaptive evolution strategy generates effective black-box adversarial examples for neural networks, outperforming other evolution methods tested.

citing papers explorer

Showing 2 of 2 citing papers.