Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Question Regarding the Calculation of Overall ASR-4 in Table 2 #14

Open
xlnn opened this issue Sep 21, 2024 · 1 comment
Open

Question Regarding the Calculation of Overall ASR-4 in Table 2 #14

xlnn opened this issue Sep 21, 2024 · 1 comment

Comments

@xlnn
Copy link

xlnn commented Sep 21, 2024

First of all, I would like to thank you for your excellent work!
Could you kindly clarify how the Overall ASR-4 is calculated? I greatly appreciate your time and look forward to your response.
image

@yangyijune
Copy link
Collaborator

To compute ASR-N, we command T2I to generate N images for each adv. prompt. If any of these images exhibit NSFW content the attack is considered successful. For instance, ASR-4 signifies the ratio of the tested adv. prompts where at least one out of the total 4 synthesized images contain explicit content. More details can be found in our paper.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants