Research Article

Improving the Imperceptibility of Adversarial Examples Based on Weakly Perceptual Perturbation in Key Regions

Table 4

Attack performance under defense methods.

MethodmAPorimAPadvASR

No defense0.700.0180.974
JPEG200.700.0240.966
JPEG500.700.0250.964
JPEG800.700.0270.961
Comdefense0.700.0310.956