jonasrauber / linear-region-attack

A powerful white-box adversarial attack that exploits knowledge about the geometry of neural networks to find minimal adversarial perturbations without doing gradient descent
11Updated 4 years ago

Related projects

Alternatives and complementary repositories for linear-region-attack