@inproceedings{QuiKleArpJoh+20, title = {Adversarial Preprocessing: Understanding and Preventing Image-Scaling Attacks in Machine Learning.}, author = {Erwin Quiring AND David Klein AND Daniel Arp AND Martin Johns AND Konrad Rieck}, booktitle = {Proc. of USENIX Security Symposium}, year = {2020}, tnid = {1886248773}, doi = {https://www.usenix.org/conference/usenixsecurity20/presentation/quiring}, pages = {1363--1380}, }