Skip to content

ART Defences

Beat Buesser edited this page Mar 28, 2023 · 7 revisions
  1. Preprocessor
  2. Postprocessor
  3. Trainer
  4. Transformer
  5. Detector

1. Preprocessor

2. Postprocessor

3. Trainer

4. Transformer

4.1 Evasion

4.2 Poisoning

5. Detector

5.1 Evasion

  • Basic detector based on inputs
  • Detector trained on the activations of a specific layer
  • Detector based on Fast Generalized Subset Scan (Speakman et al., 2018) ​

5.2 Poisoning