@article{xiang2020patchguard,
title={PatchGuard: Provable Defense against Adversarial Patches Using Masks on Small Receptive Fields},
author={Xiang, Chong and Bhagoji, Arjun Nitin and Sehwag, Vikash and Mittal, Prateek},
journal={arXiv preprint arXiv:2005.10884},
year={2020}
}