Research Article

[Retracted] Adversarial Attacks Defense Method Based on Multiple Filtering and Image Rotation

Table 4

The classification accuracy (our defense).

AttackClassify
AlexNet (%)VGG-19 (%)Inception (%)ResNet-50 (%)

AlexNet963.563.565
VGG-1940.513.56363.5
Inception34.546.51857
ResNet-5030.535.560.520