2021
Detecting Adversarial Examples from Sensitivity Inconsistency of Spatial-Transform Domain
AAAI 2021technical
Deep neural networks (DNNs) have been shown to be vulnerable against adversarial examples (AEs), which are maliciously designed to cause dramatic model output errors. In this work, we reveal that normal examples (NEs) are insensitive to the fluctuations occurring at the highly-curved region of the d…