1. GenAttack: Practical black-box attacks with gradient-free optimization;Alzantot,2018
2. GenAttack: Practical black-box attacks with gradient-free optimization;Alzantot,2019
3. Color and edge-aware adversarial image perturbations;Bassett,2020
4. Decision-based adversarial attacks: Reliable attacks against black-box machine learning models;Brendel,2017
5. Towards evaluating the robustness of neural networks;Carlini,2017