1. Poggio, T., Torre, V. & Koch, C. in Readings in Computer Vision (eds Fischler, M. A. & Firschein, O.) 638–643 (Morgan Kaufman, 1987).
2. Yildirim, I., Belledonne, M., Freiwald, W. & Tenenbaum, J. Efficient inverse graphics in biological face processing. Sci. Adv. 6, eaax5979 (2020).
3. Williams, C. K. Structured generative models for scene understanding. Preprint at arXiv https://doi.org/10.48550/arXiv.2302.03531 (2023).
4. Szegedy, C. et al. Intriguing properties of neural networks. In Proc. International Conference on Learning Representations (eds Courville, A. et al.) (ICLR, 2014).
5. Madry, A., Makelov, A., Schmidt, L., Tsipras, D. & Vladu, A. Towards deep learning models resistant to adversarial attacks. In Proc. 6th International Conference on Learning Representations (eds Sainath, T. et al.) (ICLR, 2018).