Certified Defense to Image Transformations via Randomized Smoothing

NeurIPS 2020