- using
train.sh
ortrain_pgd.sh
to train a model to be attacked, wheretrain_pgd.sh
refers to PGD-based adversarial training - using
attack.sh
to make adversarial samples
utils.py
contains some tools to generate stronger adversarial samples- Gaussian Ambiguity
- Logits Merge
examples
contains some adversarial samples generated by using this repo
Special thanks to torchattacks