An Adversarial Patch Attack for Vehicle Detectors in the Physical World

Panna Geng, Xinyang Deng

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

Compared with global pixel-level adversarial samples, adversarial patches do not pursue visual concealment and are easier to achieve attack effects in the physical world. However, most of the existing adversarial patch attacks on vehicles have overlooked the influence of patch coverage position in the physical world. Some methods have not conducted real physical patch attack experiments, and the test of attack effect has been limited to the digital world. At the same time, during the patch optimization process, the attack effect when transferred to other models has not been considered. In this paper, we propose a vehicle adversarial patch attack method based on model perception and attention. Based on the model perception to high-frequency information, we use such high-frequency information of the image that the model cannot correctly classify as the initial adversarial patch to enhance the transferability. Based on the model attention patterns, the attention region of the model is obtained, and cover this region with patches as much as possible to achieve the attack more easily. Experiments demonstrate that our patch can remarkably reduce the detection accuracy of model in the digital world, while ensuring the attack effect of the adversarial patch in the physical world.

源语言英语
主期刊名Proceedings of 2023 IEEE International Conference on Unmanned Systems, ICUS 2023
编辑Rong Song
出版商Institute of Electrical and Electronics Engineers Inc.
1009-1013
页数5
ISBN(电子版)9798350316308
DOI
出版状态已出版 - 2023
活动2023 IEEE International Conference on Unmanned Systems, ICUS 2023 - Hefei, 中国
期限: 13 10月 202315 10月 2023

出版系列

姓名Proceedings of 2023 IEEE International Conference on Unmanned Systems, ICUS 2023

会议

会议2023 IEEE International Conference on Unmanned Systems, ICUS 2023
国家/地区中国
Hefei
时期13/10/2315/10/23

指纹

探究 'An Adversarial Patch Attack for Vehicle Detectors in the Physical World' 的科研主题。它们共同构成独一无二的指纹。

引用此