Skip to content

Modified implementation of generative adversarial attacks on black box models that output image descriptors

License

Notifications You must be signed in to change notification settings

maremun/GenAttackMCS2018

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

5 Commits
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

GenAttackMCS2018

This is a modified implementation of generative adversarial attacks on black-box models from GenAttack: Practical Black-box Attacks with Gradient-Free Optimization paper. I used it to attack models from this competition held as a part of Machines Can See 2018 summit.

Some notes:

  • The black-box model in the competition outputs descriptors, so the original objective has been changed to MSE loss between descriptors. There are some other smaller changes made along the way.

  • Apparently, the black-box model was implemented using Pytorch 0.3.1 and, unfortunately, does not go well when trying to run with Pytorch 0.4.0+ imported at the same time. So, the requirement is to use Pytorch 0.3.1.

  • As the official repo for the GenAttack paper is empty for now, in the nearest future I also plan to publish a Pytorch 0.4.0+ implementation of general purpose GenAttack, digesting both descriptors and logits, i.e. enabling the paper experiments reproduction.

About

Modified implementation of generative adversarial attacks on black box models that output image descriptors

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published