1. Intriguing properties of neural networks;Szegedy,2014
2. Why do adversarial attacks transfer? Explaining transferability of evasion and poisoning attacks;Demontis,2019
3. Knockoff nets: stealing functionality of black-box models;Orekondy,2019
4. Neural network inversion in adversarial setting via background knowledge alignment;Yang,2019
5. Dimba: discretely masked black-box attack in single object tracking;Yin;Mach. Learn.,2022