conference-paper Open access

Background Class Defense Against Adversarial Examples

Research footprint

At a glance

Citations
14
References
21
Comments
0
Paper overview

Abstract

Adversarial examples allow crafted attacks against deep neural network classification of images. We propose a defense of expanding the training set with a single, large, and diverse class of background images, striving to `fill' around the borders of the classification boundary. We find it aids detection of simple attacks on EMNIST, but not advanced attacks. We discuss several limitations of our examination.

Record transparency

Publication details

DOI
10.1109/spw.2018.00023
OpenAlex
W2886462939
Document type
conference-paper
Language
EN
Last metadata update
Community

Comments

Log in to join the discussion.

  1. No comments yet. Start the discussion.