Research Article

Challenging the Adversarial Robustness of DNNs Based on Error-Correcting Output Codes

Table 2

Results of the attack against ECOC for CIFAR-10 classification.

ParametersProposed (ECOC)C&W (ECOC)C&W (one-hot)
ASR (%)PSNRASR (%)PSNRASR (%)PSNR

(1e − 4, 5, 100, 0)69.338.5953.639.7192.540.03
(1e − 4, 5, 500, 0)88.038.5262.339.9410040.27
(1e − 4, 10, 200, 0)90.637.847937.3210040.18
(1e − 4, 10, 500, 0)95.038.3982.637.5510040.30
(1e − 1, 10, 2000, 0)98.638.4192.636.9710039.99

Reported parameters indicate, respectively (start point, number of steps of binary search, max iterations, confidence).