Research Article

Complete Defense Framework to Protect Deep Neural Networks against Adversarial Examples

Table 9

Performance of ResGN optimized by FGSM adversarial examples with strength .

Training setTesting set

FGSM FGSM
80.686.389.993.6
R-FGSM
78.881.487.292.3
BIM
79.390.686.891.2
UAPDeepFoolCW_UTCW_TLegitimateAverage
90.490.691.790.498.187.6