L. Demetrio, Biggio, B., Lagorio, G., Roli, F., and Armando, A.,
“Functionality-Preserving Black-Box Optimization of Adversarial Windows Malware”,
IEEE Transactions on Information Forensics and Security, vol. 16, pp. 3469-3478, 2021.
A. Emanuele Cinà, Vascon, S., Demontis, A., Biggio, B., Roli, F., and Pelillo, M.,
“The Hammer and the Nut: Is Bilevel Optimization Really Needed to Poison Linear Classifiers?”, in
International Joint Conference on Neural Networks, (IJCNN) 2021, Shenzhen, China, 2021, pp. 1–8.
L. Putzu, Loddo, A., and Di Ruberto, C.,
“Invariant Moments, Textural and Deep Features for Diagnostic MR and CT Image Retrieval”, in
Computer Analysis of Images and Patterns, Cham, 2021, pp. 287–297.
M. Kravchik, Biggio, B., and Shabtai, A.,
“Poisoning Attacks on Cyber Attack Detectors for Industrial Control Systems”, in
Proceedings of the 36th Annual ACM Symposium on Applied Computing, New York, NY, USA, 2021, pp. 116–125.