Adversarial noise isn't specific to deep learning models. Most model working on high-dimensional input will confidently misclassify noise with high confidence if you construct the noise right.
The original "adversarial pixel" paper demonstrates this with logistic regression.
Comments
Adversarial noise isn't specific to deep learning models. Most model working on high-dimensional input will confidently misclassify noise with high confidence if you construct the noise right.
The original "adversarial pixel" paper demonstrates this with logistic regression.
https://arxiv.org/pdf/1412.6572v3.pdf