1. Attacking adversarial attacks as a defense;wu;ArXiv Preprint,2021
2. Stable neural ode with lyapunov-stable equilibrium points for defending against adversarial attacks;kang;Advances in neural information processing systems,2021
3. Diffusion models for adversarial purification;nie;ArXiv Preprint,2022
4. Pixeldefend: Leveraging generative models to understand and defend against adversarial examples;song;ArXiv Preprint,2017
5. Towards robust neural networks via close-loop control;chen;ArXiv Preprint,2021