M. Cisse, P. Bojanowski, E. Grave, Y. Dauphin, and N. Usunier, Parseval networks : Improving robustness to adversarial examples, International Conference on Machine Learning, pp.854-863, 2017.

L. Engstrom, A. Ilyas, and A. Athalye, Evaluating and understanding the robustness of adversarial logit pairing, 2018.

N. Ford, J. Gilmer, N. Carlini, and D. Cubuk, Adversarial examples are a natural consequence of test error in noise, 2019.

X. Gastaldi, Shake-shake regularization, 2017.

I. J. Goodfellow, J. Shlens, and C. Szegedy, Explaining and harnessing adversarial examples, 2014.

K. He, X. Zhang, S. Ren, and J. Sun, Identity mappings in deep residual networks, European Conference on Computer Vision, pp.630-645, 2016.

D. Hendrycks and T. Dietterich, Benchmarking neural network robustness to common corruptions and perturbations, Proceedings of the International Conference on Learning Representations, 2019.

K. Hornik, M. Stinchcombe, and H. White, Multilayer feedforward networks are universal approximators. Neural networks, vol.2, pp.359-366, 1989.

A. Krizhevsky, I. Sutskever, and G. E. Hinton, Imagenet classification with deep convolutional neural networks, Advances in neural information processing systems, pp.1097-1105, 2012.

A. Kurakin, I. Goodfellow, and S. Bengio, Adversarial machine learning at scale, 2016.

C. E. Lassance, V. Gripon, and A. Ortega, Laplacian networks : Bounding indicator function smoothness for neural networks robustness, Open Review, 2019.

A. Madry, A. Makelov, L. Schmidt, D. Tsipras, and A. Vladu, Towards deep learning models resistant to adversarial attacks, 2018.

S. Mallat, Understanding deep convolutional networks, Phil. Trans. R. Soc. A, vol.374, p.20150203, 2016.

M. E. Peters, M. Neumann, M. Iyyer, M. Gardner, C. Clark et al., Deep contextualized word representations, Proc. of NAACL, 2018.

M. Pezeshki, L. Fan, P. Brakel, A. Courville, and Y. Bengio, Deconstructing the ladder network architecture, International Conference on Machine Learning, pp.2368-2376, 2016.

H. Qian and M. N. Wegman, L2-nonexpansive neural networks, International Conference on Learning Representations, 2019.

C. Szegedy, W. Zaremba, I. Sutskever, J. Bruna, D. Erhan et al., Intriguing properties of neural networks, 2013.

Y. Wu, M. Schuster, Z. Chen, Q. V. Le, M. Norouzi et al., Google's neural machine translation system : Bridging the gap between human and machine translation, 2016.