Opportunity: Develop a detector that classifies input images to DNN-based perception systems as clean or adversarial.
Challenge: How to design an attack-agnostic and dataset-agnostic detector that works for both digital and physical attacks?