A new black-box adversarial example detector, PID, uses the confidence of an auxiliary model on the primary model's predicted label (1 - g_y(x)) to separate adversarial from normal inputs.
A comprehensive study on robustness of image classification models: Benchmarking and rethinking.International Journal of Computer Vision, pages 1–23, 2024
1 Pith paper cite this work. Polarity classification is still indexing.
1
Pith paper citing it
citation-role summary
background 1
citation-polarity summary
fields
cs.CR 1years
2025 1verdicts
CONDITIONAL 1roles
background 1polarities
background 1representative citing papers
citing papers explorer
-
Prediction Inconsistency Helps Achieve Generalizable Detection of Adversarial Examples
A new black-box adversarial example detector, PID, uses the confidence of an auxiliary model on the primary model's predicted label (1 - g_y(x)) to separate adversarial from normal inputs.