1. Evaluating the adversarial robustness of adaptive test-time defenses;croce;arXiv 2202 13711,2022
2. On detecting adversarial perturbations;metzen;arXiv 1702 04267,2017
3. Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks;croce;ICML,2020
4. Ml-loo: Detecting adversarial examples with feature attribution;yang;arXiv 1906 03499,2019
5. Adversarial Attacks are Reversible with Natural Supervision