Skip to content

nips2018 vision adversarial robustness competition - model track 2nd place solution

Notifications You must be signed in to change notification settings

walkerning/NIPS2018-AVC-ModelTrack-TeamWilson

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

57 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Mutual Adversarial Training with Early-stop black-box Adversarial Examples

Our team's code for the NIPS2018 vision adversarial robustness competition - model track. (Team Wilson, 2nd place) slide

Training codes are under train branch, some training configuration files are under cfgs/.

Local/docker evaluation codes are under master branch.

Our final submission (foolbox model-zoo compatible) is in https://github.com/walkerning/nips18comp_submission

Techniques

Training

  • Gaussian/Salt-and-Pepper noises
  • Distill Adversarial Training/High level guidance (not useful in the query-based attack threat model)
  • Mutual Adversarial Training
  • Early-stop blackbox adversarial examples
  • Gray-box adversarial training (we do not find this help)

Inference

  • Model Ensemble
  • Multi-crop/scale forward (do not help as the attacker can query many times)

About

nips2018 vision adversarial robustness competition - model track 2nd place solution

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages