Feature Squeezing: Detecting Adversarial Examples in Deep Neural Networks | Synapse