In what sense an image of a rabbit perturbed by adversarial noise can be _correctly_ recognized as a duck?
There can be a general consensus that the image looks like a duck at most. And if humans see a rabbit and AIs see a duck there just won't be consensus.
There can be a general consensus that the image looks like a duck at most. And if humans see a rabbit and AIs see a duck there just won't be consensus.