Research Article

From Spatial to Spectral Domain, a New Perspective for Detecting Adversarial Examples

Figure 5

Visualizing the representations of different layers and its corresponding spectrum. The horizontal and vertical axes represent the feature maps of different layers and the corresponding spectrum, respectively. The pretrained model is trained on CIFAR-10 and adversarial examples are generated by FGSM.