Wu, Y., S. S. Arora, Y. Wu, and H. Yang. “Beating Attackers At Their Own Games: Adversarial Example Detection Using Adversarial Gradient Directions”. Proceedings of the AAAI Conference on Artificial Intelligence, vol. 35, no. 4, May 2021, pp. 2969-77, doi:10.1609/aaai.v35i4.16404.