Extending Adversarial Attacks to Produce Adversarial Class Probability Distributions
Jon Vadillo, Roberto Santana and Jose A. Lozano
Click an icon from the table below to reproduce the corresponding audio.
The rows of the table indicate the source class of the audio, and the columns the target class.
|
silence |
unknown |
yes |
no |
up |
down |
left |
right |
on |
off |
stop |
go |
silence | |
|
|
|
|
|
|
|
|
|
|
|
unknown |
|
|
|
|
|
|
|
|
|
|
|
|
yes |
|
|
|
|
|
|
|
|
|
|
|
|
no |
|
|
|
|
|
|
|
|
|
|
|
|
up |
|
|
|
|
|
|
|
|
|
|
|
|
down |
|
|
|
|
|
|
|
|
|
|
|
|
left |
|
|
|
|
|
|
|
|
|
|
|
|
right |
|
|
|
|
|
|
|
|
|
|
|
|
on |
|
|
|
|
|
|
|
|
|
|
|
|
off |
|
|
|
|
|
|
|
|
|
|
|
|
stop |
|
|
|
|
|
|
|
|
|
|
|
|
go |
|
|
|
|
|
|
|
|
|
|
|
|
|
silence |
unknown |
yes |
no |
up |
down |
left |
right |
on |
off |
stop |
go |
silence | |
0.007 |
0.012 |
0.002 |
0.001 |
0.021 |
0.002 |
0.000 |
0.005 |
0.011 |
0.050 |
0.020 |
unknown |
0.056 |
|
0.021 |
0.003 |
0.126 |
0.009 |
0.084 |
0.006 |
0.027 |
0.064 |
0.004 |
0.000 |
yes |
0.085 |
0.026 |
|
0.107 |
0.015 |
0.125 |
0.002 |
0.085 |
0.145 |
0.038 |
0.037 |
0.080 |
no |
0.017 |
0.005 |
0.004 |
|
0.077 |
0.004 |
0.010 |
0.023 |
0.010 |
0.012 |
0.007 |
0.002 |
up |
0.003 |
0.007 |
0.003 |
0.003 |
|
0.014 |
0.009 |
0.028 |
0.001 |
0.009 |
0.005 |
0.006 |
down |
0.032 |
0.006 |
0.003 |
0.004 |
0.002 |
|
0.090 |
0.084 |
0.010 |
0.024 |
0.004 |
0.003 |
left |
0.041 |
0.005 |
0.009 |
0.013 |
0.002 |
0.033 |
|
0.002 |
0.002 |
0.001 |
0.003 |
0.013 |
right |
0.019 |
0.002 |
0.005 |
0.007 |
0.021 |
0.139 |
0.001 |
|
0.051 |
0.010 |
0.088 |
0.017 |
on |
0.007 |
0.002 |
0.029 |
0.123 |
0.019 |
0.004 |
0.070 |
0.022 |
|
0.010 |
0.004 |
0.003 |
off |
0.034 |
0.003 |
0.023 |
0.097 |
0.001 |
0.032 |
0.002 |
0.026 |
0.003 |
|
0.004 |
0.017 |
stop |
0.087 |
0.005 |
0.018 |
0.006 |
0.056 |
0.026 |
0.071 |
0.037 |
0.066 |
0.095 |
|
0.040 |
go |
0.033 |
0.051 |
0.003 |
0.003 |
0.010 |
0.006 |
0.001 |
0.003 |
0.006 |
0.024 |
0.018 |
|