跳转至

Diverse Topics

约 27 个字

Adversarial Attack

\(f_{\theta}(x) \rightarrow f(\theta, x)\), we optimize input x instead of weight \(\theta\) to get the wrong result. (\(f(\theta, x) = y_{fake}\))