A robust, learnable defense mechanism that modifies model parameters to protect against attacks, unlike superficial non-parametric defenses.