1. Decision-based universal adversarial attack;wu;ArXiv Preprint,2020
2. Skip connections matter: On the transferability of adversarial examples generated with resnets;wu;ArXiv Preprint,2020
3. Intriguing properties of neural networks;szegedy;ArXiv Preprint,2013
4. Adversarial training for free!;shafahi;NeurIPS,2019
5. Distillation as a Defense to Adversarial Perturbations Against Deep Neural Networks