paper-with-me

홈 › Papers

Universal Camouflage Attack on Vision-Language Models for Autonomous Driving

2025-09-24 · Dehong Kong, Sifan Yu, Siyuan Liang, Jiawei Liang, Jianhou Gan, Aishan Liu, Wenqi Ren arxiv

Visual language modeling for automated driving is emerging as a promising research direction with substantial improvements in multimodal reasoning capabilities. Despite its advanced reasoning abilities, VLM-AD remains vulnerable to serious security threats from adversarial attacks, which involve misleading model decisions through carefully crafted perturbations. Existing attacks have obvious challenges: 1) Physical adversarial attacks primarily target vision modules. They are difficult to directly transfer to VLM-AD systems because they typically attack low-level perceptual components. 2) Adversarial attacks against VLM-AD have largely concentrated on the digital level. To address these challenges, we propose the first Universal Camouflage Attack (UCA) framework for VLM-AD. Unlike previous methods that focus on optimizing the logit layer, UCA operates in the feature space to generate physically realizable camouflage textures that exhibit strong generalization across different user commands and model architectures. Motivated by the observed vulnerability of encoder and projection layers in VLM-AD, UCA introduces a feature divergence loss (FDL) that maximizes the representational discrepancy between clean and adversarial images. In addition, UCA incorporates a multi-scale learning strategy and adjusts the sampling ratio to enhance its adaptability to changes in scale and viewpoint diversity in real-world scenarios, thereby improving training stability. Extensive experiments demonstrate that UCA can induce incorrect driving commands across various VLM-AD models and driving scenarios, significantly surpassing existing state-of-the-art attack methods (improving 30\% in 3-P metrics). Furthermore, UCA exhibits strong attack robustness under diverse viewpoints and dynamic conditions, indicating high potential for practical deployment.

📄 PDF Abstract BibTeX arXiv:2509.20196

Code (0)

등록된 구현이 없습니다.

Tasks

Multimodal ReasoningAutonomous Driving

Similar Papers 제목 키워드 기반

ACTIVE: Towards Highly Transferable 3D Physical Camouflage for Universal and Robust Vehicle Evasion

2023-08-14 · ICCV 2023 1 · Naufal Suryanto, Yongsu Kim, Harashta Tatimma Larasati, Hyoeun Kang 외

Adversarial camouflage has garnered attention for its ability to attack object detectors from any viewpoint by covering the entire object's surface. However, universality and robustness in existing methods often fall sho…

Still Camouflage, Moving Illusion: View-Induced Trajectory Manipulation in Autonomous Driving

2026-05-12 · Shuo Ju, Qingzhao Zhang, Huashan Chen, Xuheng Wang 외 arxiv

Existing physical adversarial attacks on vision-based autonomous driving induce time-evolving perception errors, including biased object tracking or trajectory prediction, through (i) sophisticated physical patch inducin…

Trajectory PredictionAutonomous VehiclesAutonomous DrivingObject Tracking

Universal Physical Camouflage Attacks on Object Detectors

2019-09-10 · CVPR 2020 6 · Lifeng Huang, Chengying Gao, Yuyin Zhou, Cihang Xie 외

In this paper, we study physical adversarial attacks on object detectors in the wild. Previous works mostly craft instance-dependent perturbations only for rigid or planar objects. To this end, we propose to learn an adv…

ObjectRegion Proposal

Decamouflage: A Framework to Detect Image-Scaling Attacks on Convolutional Neural Networks

2020-10-08 · Bedeuro Kim, Alsharif Abuadbba, Yansong Gao, Yifeng Zheng 외

As an essential processing step in computer vision applications, image resizing or scaling, more specifically downsampling, has to be applied before feeding a normally large image into a convolutional neural network (CNN…

CPUSteganalysis

Developing Imperceptible Adversarial Patches to Camouflage Military Assets From Computer Vision Enabled Technologies

2022-02-17 · Chris Wise, Jo Plested

Convolutional neural networks (CNNs) have demonstrated rapid progress and a high level of success in object detection. However, recent evidence has highlighted their vulnerability to adversarial attacks. These attacks ar…

Objectobject-detectionObject Detection