Gradient Masking Defense
Input Transformation
Defense applying non-differentiable or non-invertible transformations to inputs before classification, such as compression or resampling, to neutralize adversarial perturbations.
← 뒤로