Thanks for your contribution of this repository.
I have a doubt. In the original paper, the authors mentioned that the experimental results given are all tested under real attacks, such as JPEG compression with different quality factors, but in this repository, it seems that the trained models are verified and tested on the basis of simulated noise attacks?
Thanks for your contribution of this repository.
I have a doubt. In the original paper, the authors mentioned that the experimental results given are all tested under real attacks, such as JPEG compression with different quality factors, but in this repository, it seems that the trained models are verified and tested on the basis of simulated noise attacks?