1. Intriguing properties of neural networks;Szegedy,2014
2. Explaining and harnessing adversarial examples;Goodfellow,2015
3. Towards evaluating the robustness of neural networks;Carlini,2017
4. Towards deep learning models resistant to adversarial attacks;Madry,2018
5. One pixel attack for fooling deep neural networks;Su,2019