PAC-learning in the presence of adversaries

Daniel Cullina, Arjun Nitin Bhagoji, Prateek Mittal

Neural Information Processing Systems 

The existence of evasion attacks during the test phase of machine learning algorithms represents a significant challenge to both their deployment and understanding.