Universal Adversarial Examples

CD-UAP: Class Discriminative Universal Adversarial Perturbation

We propose a new universal attack method to generate a single perturbation that fools a target network to misclassify only a chosen group of classes, while having limited influence on the remaining classes, which is termed class discriminative universal adversarial perturbation (CD-UAP).