“…5,6,16,17 In particular, zero-sum Stackelberg games model scenarios in which patrollers must commit to a patrolling strategy that is resistant to attacks even when the intruder is able to learn their strategies perfectly, and have enjoyed wide adoption in adversarial patrolling. 5,[16][17][18] In this work, we also assume that the intruder has access to patrollers' strategies and is able to optimize its attack against them. We expand on previous approaches, however, in two ways.…”