Imperceptible adversarial attacks against traffic scene recognition

被引:0
|
作者
Yinghui Zhu
Yuzhen Jiang
机构
[1] Hanshan Normal University,School of Computer and Information Engineering
来源
Soft Computing | 2021年 / 25卷
关键词
Adversarial example; Scene recognition; Image classifier; Semantic segmentation;
D O I
暂无
中图分类号
学科分类号
摘要
Adversarial examples have begun to receive widespread attention owning to their potential destructions to the most popular DNNs. They are crafted from original images by embedding well-calculated perturbations. In some cases, the perturbations are so slight that neither human eyes nor detection algorithms can notice them, and this imperceptibility makes them more covert and dangerous. For the sake of investigating the invisible dangers in the applications of traffic DNNs, we focus on imperceptible adversarial attacks on different traffic vision tasks, including traffic sign classification, lane detection and street scene recognition. We propose a universal logits map-based attack architecture against image semantic segmentation and design two targeted attack approaches on it. All the attack algorithms generate the micro-noise adversarial examples by the iterative method of C&W optimization and achieve 100% attack rate with very low distortion, among which, our experimental results indicate that the MAE (mean absolute error) of perturbation noise based on traffic sign classifier attack is as low as 0.562, and the other two algorithms based on semantic segmentation are only 1.503 and 1.574. We believe that our research on imperceptible adversarial attacks has a certain reference value to the security of DNNs applications.
引用
收藏
页码:13069 / 13077
页数:8
相关论文
共 50 条
  • [1] Imperceptible adversarial attacks against traffic scene recognition
    Zhu, Yinghui
    Jiang, Yuzhen
    [J]. SOFT COMPUTING, 2021, 25 (20) : 13069 - 13077
  • [2] Cost-Effective Adversarial Attacks against Scene Text Recognition
    Yang, Mingkun
    Zheng, Haitian
    Bai, Xiang
    Luo, Jiebo
    [J]. 2020 25TH INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION (ICPR), 2021, : 2368 - 2374
  • [3] Local imperceptible adversarial attacks against human pose estimation networks
    Liu, Fuchang
    Zhang, Shen
    Wang, Hao
    Yan, Caiping
    Miao, Yongwei
    [J]. VISUAL COMPUTING FOR INDUSTRY BIOMEDICINE AND ART, 2023, 6 (01)
  • [4] Towards Imperceptible and Robust Adversarial Example Attacks against Neural Networks
    Luo, Bo
    Liu, Yannan
    Wei, Lingxiao
    Xu, Qiang
    [J]. THIRTY-SECOND AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE / THIRTIETH INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE CONFERENCE / EIGHTH AAAI SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2018, : 1652 - 1659
  • [5] Local imperceptible adversarial attacks against human pose estimation networks
    Fuchang Liu
    Shen Zhang
    Hao Wang
    Caiping Yan
    Yongwei Miao
    [J]. Visual Computing for Industry, Biomedicine, and Art, 6
  • [6] Visually imperceptible adversarial patch attacks
    Qian, Yagua
    Wang, Jiamin
    Wang, Haijiang
    Cu, Zhaoquan
    Wang, Bin
    Zeng, Shaonin
    Swaileh, Wassim
    [J]. COMPUTERS & SECURITY, 2022, 123
  • [7] Sample selection of adversarial attacks against traffic signs
    Wang, Yiwen
    Wang, Yue
    Feng, Guorui
    [J]. NEURAL NETWORKS, 2024, 180
  • [8] Manifold Constraints for Imperceptible Adversarial Attacks on Point Clouds
    Tang, Keke
    He, Xu
    Peng, Weilong
    Wu, Jianpeng
    Shi, Yawen
    Liu, Daizong
    Zhou, Pan
    Wang, Wenping
    Tian, Zhihong
    [J]. THIRTY-EIGHTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 38 NO 6, 2024, : 5127 - 5135
  • [9] Imperceptible Local Adversarial Attacks on Human Pose Estimation
    Liu, Fuchang
    Wang, Hao
    Wang, Yanbin
    Miao, Yongwei
    [J]. Jisuanji Fuzhu Sheji Yu Tuxingxue Xuebao/Journal of Computer-Aided Design and Computer Graphics, 2023, 35 (10): : 1577 - 1587
  • [10] Practical Adversarial Attacks Against Speaker Recognition Systems
    Li, Zhuohang
    Shi, Cong
    Xie, Yi
    Liu, Jian
    Yuan, Bo
    Chen, Yingying
    [J]. PROCEEDINGS OF THE 21ST INTERNATIONAL WORKSHOP ON MOBILE COMPUTING SYSTEMS AND APPLICATIONS (HOTMOBILE'20), 2020, : 9 - 14