2 ms·
These adversarial examples are generated in a very artificial way that will not be present in natural images (and if you’re thinking of security issues, the att
by Quetelet 7y ago
These adversarial examples are generated in a very artificial way that will not be present in natural images (and if you’re thinking of security issues, the attacker needs access to your model...)
They’re still an interesting topic to explore but hardly evidence that neural nets don’t generalize.
- goatlover 7y agoWouldn't the worry be that generalizing to real world tasks involves enough variation that the same issue could arise naturally?