Improving Generalization of Adversarial Example Detection via Principal Adversarial Domain Adaptation
A novel method, Adversarial Example Detection via Principal Adversarial Domain Adaptation (AED-PADA), is proposed to significantly improve the generalization ability of adversarial example detection by identifying Principal Adversarial Domains (PADs) and exploiting multi-source domain adaptation.