High-frequency Component Helps Explain the Generalization of...
The concept of adversarial example [54, 21] has become another intriguing direction relating to the behavior of neu- ral networks. Along this line, researchers invented powerful methods such as FGSM [21], PGD [4