Research Article

A Lightweight Modulation Classification Network Resisting White Box Gradient Attacks

Figure 9

The attack effect of FGSM and PGD and the defensive effect after defensive training. (a) FGSM attack. (b) PGD attack. (c) FGSM defense. (d) PGD defense.
(a)
(b)
(c)
(d)