Smoothed Embeddings for Certified Few-Shot Learning

Neural Information Processing Systems 

Randomized smoothing is considered to be the state-of-the-art provable defense against adversarial perturbations.