Skip to main content

Advances, Systems and Applications

Table 5 The false positive rate (FP) and the defense success rate (DSR) against the adversarial examples crated on MobileNetV3 by Admix attack method. The attacks are based on MI-FGSM

From: A secure data interaction method based on edge computing

Method

Threshold

FP

DSR

KL

5.204

1.0%

1.6%

7.326

5.0%

4.7%

8.124

10.0%

7.1%

9.180

20.0%

10.2%

FS

14.614

1.0%

0.3%

11.266

5.0%

1.6%

10.254

10.0%

3.3%

8.333

20.0%

8.6%

EADM (ours)

\(\diagdown\)

0.2%

87.9%