arXiv · 1607.04311
Defensive Distillation is Not Robust to Adversarial Examples
Abstract
We show that defensive distillation is not secure: it is no more resistant to targeted misclassification attacks than unprotected neural networks.
Explore related subjects
Keep this discovery
Explore connections, maps & timelines
Nicholas Carlini, David Wagner. 2016-07-14. Defensive Distillation is Not Robust to Adversarial Examples. https://arxiv.org/abs/1607.04311
Cite the original work for its findings. Save a collection to share your selection of sources.