affiliation not provided to SSRN
adversarial attacks, calibration, deep learning, image classification, robustness