1. [1] Rabia Jafri and Hamid R Arabnia. A survey of face recognition techniques. journal of information processing systems, 5(2):41–68, 2009.
2. [2] Yi Zeng, Han Qiu, Gerard Memmi, and Meikang Qiu. A data augmentation-based defense method against adversarial attacks in neural networks. In Algorithms and Architectures for Parallel Processing: 20th International Conference, ICA3PP 2020, New York City, NY, USA, Proceedings, Part II 20, pages 274–289. Springer, 2020.
3. Practical Black-Box Attacks against Machine Learning
4. [4] Bo Shen, Ishwar K Sethi, and Vasudev Bhaskaran. Dct domain alpha blending. In Proceedings International Conference on Image Processing. ICIP98, volume 1, pages 857–861. IEEE, 1998.
5. Adv-watermark: A Novel Watermark Perturbation for Adversarial Examples