Research Article

Improving the Imperceptibility of Adversarial Examples Based on Weakly Perceptual Perturbation in Key Regions

Figure 3

The perturbations generated by UEA and WPAE (unfiltered) have some abnormal red noise, and there is also some red noise in adversarial examples generated by the two methods. Red noise is basically eliminated in adversarial examples generated by WPAE. (e) The spectrum of perturbations. (a) Perturbation. (b) Detail. (c) Adv. (d) Detail. (e) Spectrum.