In our experiments, the NEO-KD algorithm consistently outperformed existing adversarial defense strategies specifically adapted for multi-exit networks, showcasing its effectiveness in maintaining adversarial test accuracy.
The adaptation of TEAT, initially meant for single-exit networks, to multi-exit settings demonstrated that existing methods require substantial modifications to be effective, underscoring the need for targeted solutions.
Collection
[
|
...
]