Buckman J, Roy A, Raffel C, et al. Thermometer encoding: One hot way to resist adversarial examples[J]. 2018.
In this paper
- proposed thermometer encoding to defense adversarial attacks
- demonstrate the robustness with experiments on the MNIST, CIFAR-10, CIFAR-100 and SVHN datasets.
- (B, 3, H, W)→ (B, 3*levels, H, W)
- (B, 3*levels, H, W)→ ResNet