Skip to content

有关文本扰动的问题 #44

Description

@hukexin326

作者您好!
我对论文EXPERIMENTS的D.Exploration of Perturbation on Guided Text Embeddings部分不太理解。我自己的理解是对潜在空间扰动是先DDIM inversion,再reconstruction by optimizing unconditional embeddings,最后在denoise的过程中添加扰动,同时使用自注意力来保持不可察觉性。对文本进行扰动是不是前面都不变,最后在denoise的过程中使用第二大概率的label作为prompt,但是这不会造成最后生成的对抗样本与原图像有较大的不同吗?
我还有一个不明白的地方是,您的方法使用预训练模型,没有训练过程,不对模型进行微调,那最小化损失函数αLattack + βLtransfer + γLstructure有什么作用呢?
期待您的回复,祝您科研顺利!

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions