(1)
Fan, J.; Li, W. Adversarial Training and Provable Robustness: A Tale of Two Objectives. AAAI 2021, 35, 7367-7376.