Research Article

[Retracted] Adversarial Attacks Defense Method Based on Multiple Filtering and Image Rotation

Table 2

Top-1 accuracy (%) under FGSM, DeepFool, and C&W attacks.

Target modelClearFGSMDeepFoolC&W
No defenseOur methodNo defenseOur methodNo defenseOur methodNo defenseProposed method

AlexNet58.557.020.055.00.056.50.054.0
VGG-1676.071.020.061.50.061.00.065.0
VGG-1976.071.520.063.00.066.00.071.5
Inception71.073.531.571.00.072.50.071.0
ResNet-5079.082.026.578.00.079.50.081.0
ResNet-15279.080.037.078.50.076.50.079.0