Adversarial vulnerability for any classifier

Alhussein Fawzi, Hamza Fawzi, Omar Fawzi

Neural Information Processing Systems 

Neural Information Processing Systems http://nips.cc/