On the Neural Representation for Adversarial Attack and Defense