⚡ Adversarial Perturbation Calculator

FGSM · PGD · CW · DeepFool — budget & visibility estimator
Max pixel change
0.030
L₂ norm bound
0.030
L∞ norm bound
0.030
Modified params
150,528
Perturbation visibility: imperceptible

🛡️ Defense recommendation (PGD)

Adversarial training with PGD attacks (Madry et al., 2018). Use random start and multi-step training. Input gradient regularization also helps.