1. Brown, T.B, Mané, D., Roy, A., et al. (2017). Adversarial patch. arXiv preprint arXiv:1712.09665.
2. Chen, J., Ma, T., & Xiao, C. (2018). Fastgcn: Fast learning with graph convolutional networks via importance sampling. arXiv preprint arXiv:1801.10247.
3. Chen, Z., Kailkhura, B., & Zhou, Y. (2023). An accelerated proximal algorithm for regularized nonconvex and nonsmooth bi-level optimization. Machine Learning, 112(5), 1433–63.
4. Cohen, J., Rosenfeld, E., & Kolter, Z. (2019). Certified adversarial robustness via randomized smoothing. In: International Conference on Machine Learning, PMLR, p 1310–1320.
5. Das, N., Shanbhogue, M., Chen, S.T., et al. (2017). Keeping the bad guys out: Protecting and vaccinating deep learning with jpeg compression. arXiv preprint arXiv:1705.02900.