1. Agarwal, A., Sehwag, A., Singh, R., & Vatsa, M. (2019). Deceiving face presentation attack detection via image transforms. In IEEE international conference on multimedia big data (pp. 373–382).
2. Agarwal, A., Singh, R., Vatsa, M., & Ratha, N. (2018). Are image-agnostic universal adversarial perturbations for face recognition difficult to detect? In IEEE international conference on biometrics theory, applications and systems (pp. 1–7).
3. Awais, M., Shamshad, F., & Bae, S. H. (2020). Towards an adversarially robust normalization approach. arXiv preprint arXiv:2006.11007.
4. Bahdanau, D., Cho, K., & Bengio, Y. (2014). Neural machine translation by jointly learning to align and translate. arXiv preprint arXiv:1409.0473.
5. Bradshaw, J., Matthews, A. G. G., & Ghahramani, Z. (2017). Adversarial examples, uncertainty, and transfer testing robustness in gaussian process hybrid deep networks. arXiv preprint arXiv:1707.02476
.