1. Szegedy C, Zaremba W, Sutskever I, Bruna J, Erhan D, Goodfellow I, et al. Intriguing properties of neural networks. In: 2nd international conference on learning representations. 2014.
2. Explaining and harnessing adversarial examples;Goodfellow;stat,2015
3. Pasadena: Perceptually aware and stealthy adversarial denoise attack;Cheng;IEEE Trans Multimed,2021
4. Naseer M, Khan S, Hayat M, Khan FS, Porikli F. A self-supervised approach for adversarial robustness. In: Proceedings of the IEEE/CVF conference on computer vision and pattern recognition. 2020, p. 262–71.
5. Towards evaluating the robustness of neural networks;Carlini,2017