2019
Barrage of Random Transforms for Adversarially Robust Defense
CVPR 2019oral
Defenses against adversarial examples, when using the ImageNet dataset, are historically easy to defeat. The common understanding is that a combination of simple image transformations and other various defenses are insufficient to provide the necessary protection when the obfuscated gradient is take…