Skip to main content

Table 1 Success probability Psuc and average L2 distortion \({\overline {D}}\)

From: Smooth adversarial examples

 

MNIST

ImageNet

 

C4

InceptionV3

ResNetV2

 

Psuc

\({\overline {D}}\)

Psuc

\({\overline {D}}\)

Psuc

\({\overline {D}}\)

FGSM

0.89

5.02

0.97

5.92

0.92

8.20

I-FGSM

1.00

2.69

1.00

5.54

0.99

7.58

PGD2

1.00

1.71

1.00

1.80

1.00

3.63

C&W

1.00

2.49

0.99

4.91

0.99

9.84

qPGD2

0.97

3.36

0.96

2.10

0.93

4.80

sC&W

1.00

1.97

0.99

3.00

0.98

5.99