Skip to main content
Advertisement
Browse Subject Areas
?

Click through the PLOS taxonomy to find articles in your field.

For more information about PLOS Subject Areas, click here.

< Back to Article

Fig 1.

Adversarial training process where catastrophic overfitting occurs.

More »

Fig 1 Expand

Fig 2.

Adversarial training processes in traditional FGSM adversarial training.

More »

Fig 2 Expand

Table 1.

Attack success rates of different single-step attack methods.

More »

Table 1 Expand

Table 2.

Average total perturbation magnitudes generated by different single-step attack methods.

More »

Table 2 Expand

Table 3.

Maximum total perturbation magnitudes generated by different single-step attack methods.

More »

Table 3 Expand

Fig 3.

Comparison of adversarial samples generated by different single-step attack methods.

More »

Fig 3 Expand

Fig 4.

Flowchart of fast adversarial training method based on adaptive similarity step size.

More »

Fig 4 Expand

Fig 5.

Illustrative examples for Euclidean distance similarity and cosine similarity.

More »

Fig 5 Expand

Fig 6.

Adversarial training process of ATSS on the ResNet18 model.

More »

Fig 6 Expand

Fig 7.

Adversarial training process of ATSS on the VGG19 model.

More »

Fig 7 Expand

Fig 8.

Adversarial training process of ATSS on the CIFAR-100 dataset.

More »

Fig 8 Expand

Fig 9.

Adversarial training process of ATSS on the Tiny ImageNet dataset.

More »

Fig 9 Expand

Fig 10.

Performance comparison during training among ATSS, FGSM-RS, and N-FGSM.

More »

Fig 10 Expand

Table 4.

Classification accuracy and training time under adversarial attacks for different adversarial training methods.

More »

Table 4 Expand

Fig 11.

Comparison of ATSS and multi-step adversarial training method in robust accuracy and training time.

More »

Fig 11 Expand

Table 5.

Classification accuracy against PGD-10 attacks on different datasets.

More »

Table 5 Expand

Table 6.

Test results under different similarity calculation strategies.

More »

Table 6 Expand

Table 7.

Test results under different influence coefficient.

More »

Table 7 Expand

Table 8.

Test results under different standard step size.

More »

Table 8 Expand