Adversarial Defense
Competitions with currently unpublished results:
Papers
Showing 76–100 of 403 papers
All datasetsCIFAR-10ImageNet (non-targeted PGD, max perturbation=4)ImageNetImageNet (targeted PGD, max perturbation=16)MNISTCAAD 2018miniImageNet
Benchmark Results
| # | Model | Metric | Claimed | Verified | Status |
|---|---|---|---|---|---|
| 1 | WRN-28-10 | Accuracy | 90.03 | — | Unverified |
| 2 | Diffusion Classifier | Accuracy | 89.85 | — | Unverified |
| 3 | Stochastic-LWTA/PGD/WideResNet-34-10 | Accuracy | 84.3 | — | Unverified |
| 4 | Ours (Stochastic-LWTA/PGD/WideResNet-34-5) | Accuracy | 83.4 | — | Unverified |
| 5 | Ours (Stochastic-LWTA/PGD/WideResNet-34-1) | Accuracy | 81.87 | — | Unverified |
| 6 | ResNet18 (TRADES-ANCRA/PGD-40) | Accuracy | 81.7 | — | Unverified |
| 7 | Stochastic-LWTA/PGD/WideResNet-34-5 | Attack: AutoAttack | 81.22 | — | Unverified |
| 8 | PCL (against PGD, white box) | Accuracy | 46.7 | — | Unverified |
| # | Model | Metric | Claimed | Verified | Status |
|---|---|---|---|---|---|
| 1 | SAT-EfficientNet-L1 | Accuracy | 58.6 | — | Unverified |
| 2 | LLR-ResNet-152 | Accuracy | 47 | — | Unverified |
| 3 | ResNet-152 free-m=4 | Accuracy | 36 | — | Unverified |
| 4 | ResNet-101 free-m=4 | Accuracy | 34.3 | — | Unverified |
| 5 | ResNet-50 free-m=4 | Accuracy | 31.8 | — | Unverified |
| # | Model | Metric | Claimed | Verified | Status |
|---|---|---|---|---|---|
| 1 | ResNet101 | Accuracy | 99.8 | — | Unverified |
| 2 | InceptionV3 | Accuracy | 98.6 | — | Unverified |
| 3 | Feature Denoising | Accuracy | 49.5 | — | Unverified |
| # | Model | Metric | Claimed | Verified | Status |
|---|---|---|---|---|---|
| 1 | ResNet-152 Denoise | Accuracy | 42.8 | — | Unverified |
| 2 | ResNeXt-101 DenoiseAll | Accuracy | 40.4 | — | Unverified |
| 3 | ResNet-152 | Accuracy | 39 | — | Unverified |
| # | Model | Metric | Claimed | Verified | Status |
|---|---|---|---|---|---|
| 1 | Defense GAN | Accuracy | 0.85 | — | Unverified |
| 2 | PuVAE | Accuracy | 0.81 | — | Unverified |
| # | Model | Metric | Claimed | Verified | Status |
|---|---|---|---|---|---|
| 1 | Feature Denoising | Accuracy | 50.6 | — | Unverified |
| # | Model | Metric | Claimed | Verified | Status |
|---|---|---|---|---|---|
| 1 | Auto Encoder-Block Switching defense with GradCAM | Accuracy | 88.54 | — | Unverified |