Viewing a single comment thread. View all comments

Excellent_Dirt_7504 t1_jbwwi8v wrote

If you train against one attack, you remain vulnerable to another. There is no evidence of a defense that is robust to any adversarial attack.

7

suflaj t1_jbx9h57 wrote

But there is evidence of a defense by taking as many adversarial attacks as possible and training against them. Ultimately, the ultimate defense is generalization. We know it exists, we know it is achievable, we only don't know HOW it's achievable (for non-trivial problems).

6