Research Article
From Spatial to Spectral Domain, a New Perspective for Detecting Adversarial Examples
Figure 6
Performing cluster analysis on normal and abnormal samples using t-SNE [39]. The horizontal axis denotes the feature maps of different layers for clustering and the vertical axis represents clustering in different number fields: the spatial and the spectral domain. The pretrained model is trained on CIFAR-10 and adversarial examples are generated by CW.