1. Robustness to adversarial examples through an ensemble of specialists;Abbasi;arXiv preprint arXiv:1702.06856,2017
2. Blind backdoors in deep learning models;Bagdasaryan;arXiv preprint arXiv:2005.03823,2020
3. Detecting backdoor attacks on deep neural networks by activation clustering;Chen,2019
4. Sentinet: Detecting physical attacks against deep learning systems;Chou;arXiv preprint arXiv:1812.00292,2018
5. Robustbench: a standardized adversarial robustness benchmark;Croce;arXiv preprint arXiv:2010.09670,2020