Overview of the Proposed Framework (IMAGE)
Caption
IFAP generates adversarial perturbations using model gradients and then shapes them in the discrete cosine transform (DCT) domain. Unlike existing frequency-aware methods that apply a fixed frequency mask, IFAP introduces an input-adaptive spectral envelope constraint derived from the input image’s spectrum. This constraint guides the perturbation’s full-spectrum profile to conform to the input image, which improves the spectral fidelity of the generated adversarial example while maintaining its attack effectiveness.
Credit
Professor Masahiro Okuda from Doshisha University, Japan
Usage Restrictions
Credit must be given to the creator.
License
CC BY