paper-with-me

홈 › Papers

Adversarial Neon Beam: A Light-based Physical Attack to DNNs

2022-04-02 · Chengyin Hu, Weiwen Shi, Wen Li

In the physical world, deep neural networks (DNNs) are impacted by light and shadow, which can have a significant effect on their performance. While stickers have traditionally been used as perturbations in most physical attacks, their perturbations can often be easily detected. To address this, some studies have explored the use of light-based perturbations, such as lasers or projectors, to generate more subtle perturbations, which are artificial rather than natural. In this study, we introduce a novel light-based attack called the adversarial neon beam (AdvNB), which utilizes common neon beams to create a natural black-box physical attack. Our approach is evaluated on three key criteria: effectiveness, stealthiness, and robustness. Quantitative results obtained in simulated environments demonstrate the effectiveness of the proposed method, and in physical scenarios, we achieve an attack success rate of 81.82%, surpassing the baseline. By using common neon beams as perturbations, we enhance the stealthiness of the proposed attack, enabling physical samples to appear more natural. Moreover, we validate the robustness of our approach by successfully attacking advanced DNNs with a success rate of over 75% in all cases. We also discuss defense strategies against the AdvNB attack and put forward other light-based physical attacks.

📄 PDF Abstract BibTeX arXiv:2204.00853

Code (0)

등록된 구현이 없습니다.

Tasks

Adversarial Attack

Similar Papers 제목 키워드 기반

Adversarial Laser Beam: Effective Physical-World Attack to DNNs in a Blink

2021-03-11 · CVPR 2021 1 · Ranjie Duan, Xiaofeng Mao, A. K. Qin, Yun Yang 외

Though it is well known that the performance of deep neural networks (DNNs) degrades under certain light conditions, there exists no study on the threats of light beams emitted from some physical source as adversarial at…

Adversarial Attack

Adversarial Catoptric Light: An Effective, Stealthy and Robust Physical-World Attack to DNNs

2022-09-19 · Chengyin Hu, Weiwen Shi

Deep neural networks (DNNs) have demonstrated exceptional success across various tasks, underscoring the need to evaluate the robustness of advanced DNNs. However, traditional methods using stickers as physical perturbat…

Adversarial Color Projection: A Projector-based Physical Attack to DNNs

2022-09-19 · Chengyin Hu, Weiwen Shi, Ling Tian

Recent research has demonstrated that deep neural networks (DNNs) are vulnerable to adversarial perturbations. Therefore, it is imperative to evaluate the resilience of advanced DNNs to adversarial attacks. However, trad…

Adversarial Attack

Robustness of Misinformation Classification Systems to Adversarial Examples Through BeamAttack

2025-06-30 · Arnisa Fazla, Lucas Krauter, David Guzman Piedrahita, Andrianos Michail

We extend BeamAttack, an adversarial attack algorithm designed to evaluate the robustness of text classification systems through word-level modifications guided by beam search. Our extensions include support for word del…

Adversarial AttackMisinformationtext-classificationText Classification

BeamAttack: Generating High-quality Textual Adversarial Examples through Beam Search and Mixed Semantic Spaces

2023-03-09 · Hai Zhu, Qingyang Zhao, Yuren Wu

Natural language processing models based on neural networks are vulnerable to adversarial examples. These adversarial examples are imperceptible to human readers but can mislead models to make the wrong predictions. In a…

Heuristic Search