1. Amoroso, D., & Tamburrini, G. (2021). Toward a normative model of meaningful human control over weapons systems. Ethics & International Affairs, 35(2), 245–272.
2. ANU-NSC. (2020). Transparent oceans? The coming SSBN counter-detection task may be insuperable. Canberra: National Security College Publication, Australian National University. Accessed March 26, 2023, from https://nsc.crawford.anu.edu.au/publication/16666/transparent-oceans-coming-ssbn-counter-detection-task-may-be-insuperable.
3. Arms Control Association. (2019). Nuclear false warnings and the risk of catastrophe. Arms Control Today [online]. Accessed March 26, 2023, from https://www.armscontrol.org/act/2019-12/focus/nuclear-false-warnings-risk-catastrophe.
4. Athalye, A., Engstrom, L., Ilyas, A., & Kwok, K. (2018). Synthesizing robust adversarial examples. Proceedings of Machine Learning Research, 80, 284–293. Accessed March 26, 2023, from https://proceedings.mlr.press/v80/athalye18b.html
5. Biggio, B., & Roli, F. (2018). Wild patterns: Ten years after the rise of adversarial machine learning. Pattern Recognition, 84, 317–331.