Hardening DGA Classifiers Using Adversarial Attacks and IVAP