Research Article

Cycle-Consistent Adversarial GAN: The Integration of Adversarial Attack and Defense

Table 4

Classification accuracy of adversarial examples generated by different methods transferred between different models on MNIST. (FGSM) means that we train the CycleAdvGAN with the adversarial examples crafted by FGSM.

TargetSource
A
FGSMBIMPGD
FGSMBIMPGD

BWithout 46.5302820.8342418.8
Defense with 98.297.396.8