paper-with-me

홈 › Papers

Evaluating Adversarial Attacks on Traffic Sign Classifiers beyond Standard Baselines

2024-12-12 · Svetlana Pavlitska, Leopold Müller, J. Marius Zöllner

Adversarial attacks on traffic sign classification models were among the first successfully tried in the real world. Since then, the research in this area has been mainly restricted to repeating baseline models, such as LISA-CNN or GTSRB-CNN, and similar experiment settings, including white and black patches on traffic signs. In this work, we decouple model architectures from the datasets and evaluate on further generic models to make a fair comparison. Furthermore, we compare two attack settings, inconspicuous and visible, which are usually regarded without direct comparison. Our results show that standard baselines like LISA-CNN or GTSRB-CNN are significantly more susceptible than the generic ones. We, therefore, suggest evaluating new attacks on a broader spectrum of baselines in the future. Our code is available at \url{https://github.com/KASTEL-MobilityLab/attacks-on-traffic-sign-recognition/}.

📄 PDF Abstract BibTeX arXiv:2412.09150

Code (1)

kastel-mobilitylab/attacks-on-traffic-sign-recognition 공식 구현 pytorch

Tasks

Traffic Sign Recognition

Similar Papers 제목 키워드 기반

Evaluating the Impact of Adversarial Attacks on Traffic Sign Classification using the LISA Dataset

2025-09-08 · Nabeyou Tadessa, Balaji Iyangar, Mashrur Chowdhury arxiv

Adversarial attacks pose significant threats to machine learning models by introducing carefully crafted perturbations that cause misclassification. While prior work has primarily focused on MNIST and similar datasets, t…

Traffic Sign Recognition

Minimax Defense against Gradient-based Adversarial Attacks

2020-02-04 · Blerta Lindqvist, Rauf Izmailov

State-of-the-art adversarial attacks are aimed at neural network classifiers. By default, neural networks use gradient descent to minimize their loss function. The gradient of a classifier's loss function is used by grad…

Generative Adversarial Network

Fooling a Real Car with Adversarial Traffic Signs

2019-06-30 · Nir Morgulis, Alexander Kreines, Shachar Mendelowitz, Yuval Weisglass

The attacks on the neural-network-based classifiers using adversarial images have gained a lot of attention recently. An adversary can purposely generate an image that is indistinguishable from a innocent image for a hum…

image-classificationImage ClassificationTraffic Sign Recognition

Explainable and Trustworthy Traffic Sign Detection for Safe Autonomous Driving: An Inductive Logic Programming Approach

2023-08-30 · Zahra Chaghazardi, Saber Fallah, Alireza Tamaddoni-Nezhad

Traffic sign detection is a critical task in the operation of Autonomous Vehicles (AV), as it ensures the safety of all road users. Current DNN-based sign classification systems rely on pixel-level features to detect tra…

Autonomous DrivingAutonomous VehiclesInductive logic programmingTraffic Sign Detection

A Hybrid Defense Method against Adversarial Attacks on Traffic Sign Classifiers in Autonomous Vehicles

2022-04-25 · Zadid Khan, Mashrur Chowdhury, Sakib Mahmud Khan

Adversarial attacks can make deep neural network (DNN) models predict incorrect output labels, such as misclassified traffic signs, for autonomous vehicle (AV) perception modules. Resilience against adversarial attacks c…

Autonomous VehiclesNavigateOptical Character RecognitionOptical Character Recognition (OCR)+1