1. Synthesizing robust adversarial examples;Athalye,2018
2. Sparse adversarial attack to object detection;Bao;arXiv preprint arXiv:2012.13692,2020
3. Exploring the space of black-box attacks on deep neural networks;Bhagoji;arXiv preprint arXiv:1712.09491,2017
4. End to end learning for self-driving cars;Bojarski;arXiv preprint arXiv:1604.07316,2016
5. Decision-based adversarial attacks: reliable attacks against black-box machine learning models;Brendel;arXiv preprint arXiv:1712.04248,2017