Hacker News new | ask | show | jobs
by joshuawarner32 3521 days ago
See also: https://arxiv.org/abs/1511.04599

IMO, (at least) two pieces of research on the subject means that the short answer really is "yes". Maybe not the exact technique used in the paper in the original post, but conceptually similar techniques.

1 comments

It's easier to find fooling perturbations of one image, but not of the whole dataset. I assumed the question was can we use the universal perturbations for robust training? The answer to that is still "no", I think.