paper-with-me

홈 › Papers

Adversarial Catoptric Light: An Effective, Stealthy and Robust Physical-World Attack to DNNs

2022-09-19 · Chengyin Hu, Weiwen Shi

Deep neural networks (DNNs) have demonstrated exceptional success across various tasks, underscoring the need to evaluate the robustness of advanced DNNs. However, traditional methods using stickers as physical perturbations to deceive classifiers present challenges in achieving stealthiness and suffer from printing loss. Recent advancements in physical attacks have utilized light beams such as lasers and projectors to perform attacks, where the optical patterns generated are artificial rather than natural. In this study, we introduce a novel physical attack, adversarial catoptric light (AdvCL), where adversarial perturbations are generated using a common natural phenomenon, catoptric light, to achieve stealthy and naturalistic adversarial attacks against advanced DNNs in a black-box setting. We evaluate the proposed method in three aspects: effectiveness, stealthiness, and robustness. Quantitative results obtained in simulated environments demonstrate the effectiveness of the proposed method, and in physical scenarios, we achieve an attack success rate of 83.5%, surpassing the baseline. We use common catoptric light as a perturbation to enhance the stealthiness of the method and make physical samples appear more natural. Robustness is validated by successfully attacking advanced and robust DNNs with a success rate over 80% in all cases. Additionally, we discuss defense strategy against AdvCL and put forward some light-based physical attacks.

📄 PDF Abstract BibTeX arXiv:2209.11739

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

SPAA: Stealthy Projector-based Adversarial Attacks on Deep Image Classifiers

2020-12-10 · Bingyao Huang, Haibin Ling

Light-based adversarial attacks use spatial augmented reality (SAR) techniques to fool image classifiers by altering the physical light condition with a controllable light source, e.g., a projector. Compared with physica…

Adversarial Attack

RFLA: A Stealthy Reflected Light Adversarial Attack in the Physical World

2023-07-14 · ICCV 2023 1 · Donghua Wang, Wen Yao, Tingsong Jiang, Chao Li 외

Physical adversarial attacks against deep neural networks (DNNs) have recently gained increasing attention. The current mainstream physical attacks use printed adversarial patches or camouflage to alter the appearance of…

Adversarial AttackObject

Distillation-Enhanced Physical Adversarial Attacks

2025-01-04 · Wei Liu, Yonglin Wu, CHAOQUN LI, Zhuodong Liu 외

The study of physical adversarial patches is crucial for identifying vulnerabilities in AI-based recognition systems and developing more robust deep learning models. While recent research has focused on improving patch s…

Adversarial AttackKnowledge Distillation

Stealthy Physical Masked Face Recognition Attack via Adversarial Style Optimization

2023-09-18 · Huihui Gong, Minjing Dong, Siqi Ma, Seyit Camtepe 외

Deep neural networks (DNNs) have achieved state-of-the-art performance on face recognition (FR) tasks in the last decade. In real scenarios, the deployment of DNNs requires taking various face accessories into considerat…

Face Recognition

A Practical and Stealthy Adversarial Attack for Cyber-Physical Applications

2021-11-22 · AAAI Workshop AdvML 2022 2 · YiFu Wu, Jin Wei-Kocsis

Adversarial perturbations on misleading a well-trained machine learning (ML) model have been studied in computer vision (CV) and other related application areas. However, there is very limited focus on studying the impac…

Adversarial Attack