Skip to content
体验新版
项目
组织
正在加载...
登录
切换导航
打开侧边栏
PaddlePaddle
models
提交
ae418490
M
models
项目概览
PaddlePaddle
/
models
大约 2 年 前同步成功
通知
232
Star
6828
Fork
2962
代码
文件
提交
分支
Tags
贡献者
分支图
Diff
Issue
602
列表
看板
标记
里程碑
合并请求
255
Wiki
0
Wiki
分析
仓库
DevOps
项目成员
Pages
M
models
项目概览
项目概览
详情
发布
仓库
仓库
文件
提交
分支
标签
贡献者
分支图
比较
Issue
602
Issue
602
列表
看板
标记
里程碑
合并请求
255
合并请求
255
Pages
分析
分析
仓库分析
DevOps
Wiki
0
Wiki
成员
成员
收起侧边栏
关闭侧边栏
动态
分支图
创建新Issue
提交
Issue看板
提交
ae418490
编写于
2月 10, 2018
作者:
wgzqz
浏览文件
操作
浏览文件
下载
电子邮件补丁
差异文件
Add bad_adversary_example property to record the example even it is bad.
上级
307dd366
变更
4
隐藏空白更改
内联
并排
Showing
4 changed file
with
42 addition
and
66 deletion
+42
-66
fluid/adversarial/advbox/adversary.py
fluid/adversarial/advbox/adversary.py
+28
-60
fluid/adversarial/advbox/attacks/base.py
fluid/adversarial/advbox/attacks/base.py
+4
-3
fluid/adversarial/advbox/attacks/deepfool.py
fluid/adversarial/advbox/attacks/deepfool.py
+8
-3
fluid/adversarial/advbox/attacks/lbfgs.py
fluid/adversarial/advbox/attacks/lbfgs.py
+2
-0
未找到文件。
fluid/adversarial/advbox/adversary.py
浏览文件 @
ae418490
...
@@ -18,13 +18,15 @@ class Adversary(object):
...
@@ -18,13 +18,15 @@ class Adversary(object):
"""
"""
assert
original
is
not
None
assert
original
is
not
None
self
.
original_label
=
original_label
self
.
target_label
=
None
self
.
adversarial_label
=
None
self
.
__original
=
original
self
.
__original
=
original
self
.
__original_label
=
original_label
self
.
__target_label
=
None
self
.
__target
=
None
self
.
__target
=
None
self
.
__is_targeted_attack
=
False
self
.
__is_targeted_attack
=
False
self
.
__adversarial_example
=
None
self
.
__adversarial_example
=
None
self
.
__
adversarial_label
=
None
self
.
__
bad_adversarial_example
=
None
def
set_target
(
self
,
is_targeted_attack
,
target
=
None
,
target_label
=
None
):
def
set_target
(
self
,
is_targeted_attack
,
target
=
None
,
target_label
=
None
):
"""
"""
...
@@ -38,10 +40,10 @@ class Adversary(object):
...
@@ -38,10 +40,10 @@ class Adversary(object):
"""
"""
assert
(
target_label
is
None
)
or
is_targeted_attack
assert
(
target_label
is
None
)
or
is_targeted_attack
self
.
__is_targeted_attack
=
is_targeted_attack
self
.
__is_targeted_attack
=
is_targeted_attack
self
.
__
target_label
=
target_label
self
.
target_label
=
target_label
self
.
__target
=
target
self
.
__target
=
target
if
not
is_targeted_attack
:
if
not
is_targeted_attack
:
self
.
__
target_label
=
None
self
.
target_label
=
None
self
.
__target
=
None
self
.
__target
=
None
def
set_original
(
self
,
original
,
original_label
=
None
):
def
set_original
(
self
,
original
,
original_label
=
None
):
...
@@ -53,10 +55,11 @@ class Adversary(object):
...
@@ -53,10 +55,11 @@ class Adversary(object):
"""
"""
if
original
!=
self
.
__original
:
if
original
!=
self
.
__original
:
self
.
__original
=
original
self
.
__original
=
original
self
.
__
original_label
=
original_label
self
.
original_label
=
original_label
self
.
__adversarial_example
=
None
self
.
__adversarial_example
=
None
self
.
__bad_adversarial_example
=
None
if
original
is
None
:
if
original
is
None
:
self
.
__
original_label
=
None
self
.
original_label
=
None
def
_is_successful
(
self
,
adversarial_label
):
def
_is_successful
(
self
,
adversarial_label
):
"""
"""
...
@@ -65,11 +68,11 @@ class Adversary(object):
...
@@ -65,11 +68,11 @@ class Adversary(object):
:param adversarial_label: adversarial label.
:param adversarial_label: adversarial label.
:return: bool
:return: bool
"""
"""
if
self
.
__
target_label
is
not
None
:
if
self
.
target_label
is
not
None
:
return
adversarial_label
==
self
.
__
target_label
return
adversarial_label
==
self
.
target_label
else
:
else
:
return
(
adversarial_label
is
not
None
)
and
\
return
(
adversarial_label
is
not
None
)
and
\
(
adversarial_label
!=
self
.
__
original_label
)
(
adversarial_label
!=
self
.
original_label
)
def
is_successful
(
self
):
def
is_successful
(
self
):
"""
"""
...
@@ -77,7 +80,7 @@ class Adversary(object):
...
@@ -77,7 +80,7 @@ class Adversary(object):
:return: bool
:return: bool
"""
"""
return
self
.
_is_successful
(
self
.
__
adversarial_label
)
return
self
.
_is_successful
(
self
.
adversarial_label
)
def
try_accept_the_example
(
self
,
adversarial_example
,
adversarial_label
):
def
try_accept_the_example
(
self
,
adversarial_example
,
adversarial_label
):
"""
"""
...
@@ -93,7 +96,9 @@ class Adversary(object):
...
@@ -93,7 +96,9 @@ class Adversary(object):
ok
=
self
.
_is_successful
(
adversarial_label
)
ok
=
self
.
_is_successful
(
adversarial_label
)
if
ok
:
if
ok
:
self
.
__adversarial_example
=
adversarial_example
self
.
__adversarial_example
=
adversarial_example
self
.
__adversarial_label
=
adversarial_label
self
.
adversarial_label
=
adversarial_label
else
:
self
.
__bad_adversarial_example
=
adversarial_example
return
ok
return
ok
def
perturbation
(
self
,
multiplying_factor
=
1.0
):
def
perturbation
(
self
,
multiplying_factor
=
1.0
):
...
@@ -104,9 +109,14 @@ class Adversary(object):
...
@@ -104,9 +109,14 @@ class Adversary(object):
:return: The perturbation that is multiplied by multiplying_factor.
:return: The perturbation that is multiplied by multiplying_factor.
"""
"""
assert
self
.
__original
is
not
None
assert
self
.
__original
is
not
None
assert
self
.
__adversarial_example
is
not
None
assert
(
self
.
__adversarial_example
is
not
None
)
or
\
return
multiplying_factor
*
(
(
self
.
__bad_adversarial_example
is
not
None
)
self
.
__adversarial_example
-
self
.
__original
)
if
self
.
__adversarial_example
is
not
None
:
return
multiplying_factor
*
(
self
.
__adversarial_example
-
self
.
__original
)
else
:
return
multiplying_factor
*
(
self
.
__bad_adversarial_example
-
self
.
__original
)
@
property
@
property
def
is_targeted_attack
(
self
):
def
is_targeted_attack
(
self
):
...
@@ -115,20 +125,6 @@ class Adversary(object):
...
@@ -115,20 +125,6 @@ class Adversary(object):
"""
"""
return
self
.
__is_targeted_attack
return
self
.
__is_targeted_attack
@
property
def
target_label
(
self
):
"""
:property: target_label
"""
return
self
.
__target_label
@
target_label
.
setter
def
target_label
(
self
,
label
):
"""
:property: target_label
"""
self
.
__target_label
=
label
@
property
@
property
def
target
(
self
):
def
target
(
self
):
"""
"""
...
@@ -143,20 +139,6 @@ class Adversary(object):
...
@@ -143,20 +139,6 @@ class Adversary(object):
"""
"""
return
self
.
__original
return
self
.
__original
@
property
def
original_label
(
self
):
"""
:property: original
"""
return
self
.
__original_label
@
original_label
.
setter
def
original_label
(
self
,
label
):
"""
original_label setter
"""
self
.
__original_label
=
label
@
property
@
property
def
adversarial_example
(
self
):
def
adversarial_example
(
self
):
"""
"""
...
@@ -164,23 +146,9 @@ class Adversary(object):
...
@@ -164,23 +146,9 @@ class Adversary(object):
"""
"""
return
self
.
__adversarial_example
return
self
.
__adversarial_example
@
adversarial_example
.
setter
def
adversarial_example
(
self
,
example
):
"""
adversarial_example setter
"""
self
.
__adversarial_example
=
example
@
property
@
property
def
adversarial_label
(
self
):
def
bad_adversarial_example
(
self
):
"""
:property: adversarial_label
"""
return
self
.
__adversarial_label
@
adversarial_label
.
setter
def
adversarial_label
(
self
,
label
):
"""
"""
adversarial_label setter
:property: bad_adversarial_example
"""
"""
self
.
__adversarial_label
=
label
return
self
.
__bad_adversarial_example
fluid/adversarial/advbox/attacks/base.py
浏览文件 @
ae418490
...
@@ -66,8 +66,9 @@ class Attack(object):
...
@@ -66,8 +66,9 @@ class Attack(object):
adversary
.
target_label
=
np
.
argmax
(
adversary
.
target_label
=
np
.
argmax
(
self
.
model
.
predict
(
adversary
.
target
))
self
.
model
.
predict
(
adversary
.
target
))
logging
.
info
(
'adversary:
\n
original_label: {}'
logging
.
info
(
'adversary:'
'
\n
target_label: {}'
'
\n
original_label: {}'
'
\n
is_targeted_attack: {}'
'
\n
target_label: {}'
'
\n
is_targeted_attack: {}'
''
.
format
(
adversary
.
original_label
,
adversary
.
target_label
,
''
.
format
(
adversary
.
original_label
,
adversary
.
target_label
,
adversary
.
is_targeted_attack
))
adversary
.
is_targeted_attack
))
fluid/adversarial/advbox/attacks/deepfool.py
浏览文件 @
ae418490
...
@@ -10,6 +10,8 @@ import numpy as np
...
@@ -10,6 +10,8 @@ import numpy as np
from
.base
import
Attack
from
.base
import
Attack
__all__
=
[
'DeepFoolAttack'
]
class
DeepFoolAttack
(
Attack
):
class
DeepFoolAttack
(
Attack
):
"""
"""
...
@@ -70,9 +72,12 @@ class DeepFoolAttack(Attack):
...
@@ -70,9 +72,12 @@ class DeepFoolAttack(Attack):
f
=
self
.
model
.
predict
(
x
)
f
=
self
.
model
.
predict
(
x
)
gradient
=
self
.
model
.
gradient
(
x
,
pre_label
)
gradient
=
self
.
model
.
gradient
(
x
,
pre_label
)
adv_label
=
np
.
argmax
(
f
)
adv_label
=
np
.
argmax
(
f
)
logging
.
info
(
'iteration = {}, f = {}, pre_label = {}'
logging
.
info
(
'iteration={}, f[pre_label]={}, f[target_label]={}'
', adv_label={}'
.
format
(
iteration
,
f
[
pre_label
],
', f[adv_label]={}, pre_label={}, adv_label={}'
pre_label
,
adv_label
))
''
.
format
(
iteration
,
f
[
pre_label
],
(
f
[
adversary
.
target_label
]
if
adversary
.
is_targeted_attack
else
'NaN'
),
f
[
adv_label
],
pre_label
,
adv_label
))
if
adversary
.
try_accept_the_example
(
x
,
adv_label
):
if
adversary
.
try_accept_the_example
(
x
,
adv_label
):
return
adversary
return
adversary
...
...
fluid/adversarial/advbox/attacks/lbfgs.py
浏览文件 @
ae418490
...
@@ -10,6 +10,8 @@ from scipy.optimize import fmin_l_bfgs_b
...
@@ -10,6 +10,8 @@ from scipy.optimize import fmin_l_bfgs_b
from
.base
import
Attack
from
.base
import
Attack
__all__
=
[
'LBFGSAttack'
,
'LBFGS'
]
class
LBFGSAttack
(
Attack
):
class
LBFGSAttack
(
Attack
):
"""
"""
...
...
编辑
预览
Markdown
is supported
0%
请重试
或
添加新附件
.
添加附件
取消
You are about to add
0
people
to the discussion. Proceed with caution.
先完成此消息的编辑!
取消
想要评论请
注册
或
登录