J Zhang, X Xu, B Han, G Niu, L Cui… - Proceedings of the 37th …, 2020 - dl.acm.org
Adversarial training based on the minimax formulation is necessary for obtaining adversarial
robustness of trained models. However, it is conservative or even pessimistic so that it …