Reading the adversarial ML papers so you don't have to.