1. Square Attack: A Query-Efficient Black-Box Adversarial Attack via Random Search
2. Obfuscated Gradients Give a False Sense of Security: Circumventing Defenses to Adversarial Examples;Athalye
3. Synthesizing Robust Adversarial Examples;Athalye;ArXiv,2018
4. Natural and Adversarial Error Detection using Invariance to Image Transformations;Bahat,2019
5. Decision-Based Adversarial Attacks: Reliable Attacks Against Black-Box Machine Learning Models;Brendel