1. Bojarski, M., Del Testa, D., Dworakowski, D., Firner, B., Flepp, B., Goyal, P., Jackel, L.D., Monfort, M., Muller, U., and Zhang, J. (2016). End to End Learning for Self-Driving Cars. arXiv.
2. Goodfellow, I.J., Shlens, J., and Szegedy, C. (2015, January 7–9). Explaining and Harnessing Adversarial Examples. Proceedings of the 3rd International Conference on Learning Representations, ICLR 2015, San Diego, CA, USA.
3. Szegedy, C., Zaremba, W., Sutskever, I., Bruna, J., Erhan, D., Goodfellow, I., and Fergus, R. (2014, January 14–16). Intriguing Properties of Neural Networks. Proceedings of the 2nd International Conference on Learning Representations, ICLR 2014, Banff, AB, Canada.
4. A Review of Adversarial Attack and Defense for Classification Methods;Li;Am. Stat.,2022
5. An End-to-End Convolutional Network for Joint Detecting and Denoising Adversarial Perturbations in Vehicle Classification;Liu;Comput. Vis. Media,2021