Adversarial, adversarial attacks, Adversarial Defences, computer vision, Feature Squeezing, Lp-norm, Median Filter, Vision Transformer, Wasserstein, Wide ResNet.