From: Secure machine learning against adversarial samples at test time
Parameter | MNIST |
---|---|
αNormalNoise | 0.44 |
αBIM | 0.44 |
αCW | 0.54 |
αDF | 0.54 |
τNormalNoise | 0.1 |
τBIM | 0.1 |
τCW | 0.0265 |
τDF | 0.0265 |
β | \(\frac {\alpha }{2}+\frac {1-\alpha }{11}\) |
γ | β |
ρ0 | 0.1 |
Batch size | 60 |
kmax | 3000 |
Steps | 100 |