Abstract: Highlights•This paper proposes a feature decoupling-interaction network (FDIN).•We introduces the concepts of clean features and adversarial features.•The FDIN separates the clean features and adversarial features.•We use the CW loss instead of the CE loss to improve the adversarial robustness.•The experimental results show that FDIN achieves better defense performance.
Loading