Research Article

MedicalGuard: U-Net Model Robust against Adversarially Perturbed Images

Figure 3

Pixel error between the original label and the adversarial example for the model with no defense, the baseline model, and the proposed model.