4 ms·
See also: https://arxiv.org/abs/1511.04599 https://arxiv.org/abs/1511.04599 IMO, (at least) two pieces of research on the subject means that the short answer r
by joshuawarner32 10y ago
See also: https://arxiv.org/abs/1511.04599 https://arxiv.org/abs/1511.04599
IMO, (at least) two pieces of research on the subject means that the short answer really is "yes". Maybe not the exact technique used in the paper in the original post, but conceptually similar techniques.
- sherjilozair 10y agoIt's easier to find fooling perturbations of one image, but not of the whole dataset. I assumed the question was can we use the universal perturbations for robust training? The answer to that is still "no", I think.