“…A more well-rounded solution would be to evaluate the adversarial inconsistencies from a multi-classifier POV. In [15], the authors developed the TAPD framework to detect adversarial perturbations by performing periodic transference of the classifiers to other computing environments, thereby using local and diverse datasets to find any inconsistencies. The solution, however, includes the usage of multiple computing environments and hence, increases the attack surface for adversarial attacks.…”