Thank you for your implementation of the PGD attack!
When I check the confidence in the target token before the discretization - it is increased, but after discretization is not increasing and stays very low, thus attack seems not to work. Is there anything that I should change in the script?
Best,
Valentyn