2019
Feature Space Perturbations Yield More Transferable Adversarial Examples
CVPR 2019poster
Many recent works have shown that deep learning models are vulnerable to quasi-imperceptible input perturbations, yet practitioners cannot fully explain this behavior. This work describes a transfer-based blackbox targeted adversarial attack of deep feature space representations that also provides i…