paper-with-me

홈 › Papers

RFLA: A Stealthy Reflected Light Adversarial Attack in the Physical World

2023-07-14 · ICCV 2023 1 · Donghua Wang, Wen Yao, Tingsong Jiang, Chao Li, Xiaoqian Chen

Physical adversarial attacks against deep neural networks (DNNs) have recently gained increasing attention. The current mainstream physical attacks use printed adversarial patches or camouflage to alter the appearance of the target object. However, these approaches generate conspicuous adversarial patterns that show poor stealthiness. Another physical deployable attack is the optical attack, featuring stealthiness while exhibiting weakly in the daytime with sunlight. In this paper, we propose a novel Reflected Light Attack (RFLA), featuring effective and stealthy in both the digital and physical world, which is implemented by placing the color transparent plastic sheet and a paper cut of a specific shape in front of the mirror to create different colored geometries on the target object. To achieve these goals, we devise a general framework based on the circle to model the reflected light on the target object. Specifically, we optimize a circle (composed of a coordinate and radius) to carry various geometrical shapes determined by the optimized angle. The fill color of the geometry shape and its corresponding transparency are also optimized. We extensively evaluate the effectiveness of RFLA on different datasets and models. Experiment results suggest that the proposed method achieves over 99% success rate on different datasets and models in the digital world. Additionally, we verify the effectiveness of the proposed method in different physical environments by using sunlight or a flashlight.

📄 PDF Abstract BibTeX arXiv:2307.07653

Code (1)

winterwindwang/rfla 공식 구현 pytorch

Tasks

Adversarial AttackObject

Similar Papers 제목 키워드 기반

SPAA: Stealthy Projector-based Adversarial Attacks on Deep Image Classifiers

2020-12-10 · Bingyao Huang, Haibin Ling

Light-based adversarial attacks use spatial augmented reality (SAR) techniques to fool image classifiers by altering the physical light condition with a controllable light source, e.g., a projector. Compared with physica…

Adversarial Attack

Adversarial Catoptric Light: An Effective, Stealthy and Robust Physical-World Attack to DNNs

2022-09-19 · Chengyin Hu, Weiwen Shi

Deep neural networks (DNNs) have demonstrated exceptional success across various tasks, underscoring the need to evaluate the robustness of advanced DNNs. However, traditional methods using stickers as physical perturbat…

How stealthy is stealthy? Studying the Efficacy of Black-Box Adversarial Attacks in the Real World

2025-06-03 · Francesco Panebianco, Mario D'Onghia, Stefano Zanero aand Michele Carminati

Deep learning systems, critical in domains like autonomous vehicles, are vulnerable to adversarial examples (crafted inputs designed to mislead classifiers). This study investigates black-box adversarial attacks in compu…

Autonomous Vehicles

Adversarial Training of Linear Models under Stealthy Attacks

2026-08-26 · Lovisa Eriksson, Dave Zachariah, André M. H. Teixeira arxiv

Predictive models are widely used in many fields, but are vulnerable to false data injection attacks. To address this, detection schemes and adversarial training have been proposed, but such approaches lack guarantees ag…

Distillation-Enhanced Physical Adversarial Attacks

2025-01-04 · Wei Liu, Yonglin Wu, CHAOQUN LI, Zhuodong Liu 외

The study of physical adversarial patches is crucial for identifying vulnerabilities in AI-based recognition systems and developing more robust deep learning models. While recent research has focused on improving patch s…

Adversarial AttackKnowledge Distillation