1 paper
Yisen Wang, Yichuan Mo, Hongjun Wang +2
Despite the rapid progress of neural networks, they remain highly vulnerable to adversarial examples, for which adversarial training (AT) is currently the most effective defense. W…