1. CosPGD: A unified white-box adversarial attack for pixelwise prediction tasks;Agnihotri,2023
2. Adversarial Patch Defense for Optical Flow Networks in Video Action Recognition
3. Obfuscated gradients give a false sense of security: Circumventing defenses to adversarial examples;Athalye
4. Approximating CNNs with bag-of-local-features models works surprisingly well on ImageNet;Brendel
5. Adversarial patch;Brown