If you find this work is useful in your research, please consider citing:
@article{wang2021invisible,
title={Invisible Adversarial Attack against Deep Neural Networks: An Adaptive Penalization Approach},
author={Wang, Zhibo and Song, Mengkai and Zheng, Siyan and Zhang, Zhifei and Song, Yang and Wang, Qian},
journal={IEEE Transactions on Dependable and Secure Computing},
year={2021},
volume={18},
number={3},
pages={1474-1488},
publisher={IEEE},
doi={10.1109/TDSC.2019.2929047}
}