Adversarial Examples that Fool Detectors

12/07/2017
by   Jiajun Lu, et al.
0

An adversarial example is an example that has been adjusted to produce a wrong label when presented to a system at test time. To date, adversarial example constructions have been demonstrated for classifiers, but not for detectors. If adversarial examples that could fool a detector exist, they could be used to (for example) maliciously create security hazards on roads populated with smart vehicles. In this paper, we demonstrate a construction that successfully fools two standard detectors, Faster RCNN and YOLO. The existence of such examples is surprising, as attacking a classifier is very different from attacking a detector, and that the structure of detectors - which must search for their own bounding box, and which cannot estimate that box very accurately - makes it quite likely that adversarial patterns are strongly disrupted. We show that our construction produces adversarial examples that generalize well across sequences digitally, even though large perturbations are needed. We also show that our construction yields physical objects that are adversarial.

READ FULL TEXT

page 3

page 4

page 5

page 6

page 8

research
10/09/2017

Standard detectors aren't (currently) fooled by physical adversarial stop signs

An adversarial example is an example that has been adjusted to produce t...
research
12/21/2017

Note on Attacking Object Detectors with Adversarial Stickers

Deep learning has proven to be a powerful tool for computer vision and h...
research
05/19/2020

Synthesizing Unrestricted False Positive Adversarial Objects Using Generative Models

Adversarial examples are data points misclassified by neural networks. O...
research
07/31/2020

Physical Adversarial Attack on Vehicle Detector in the Carla Simulator

In this paper, we tackle the issue of physical adversarial examples for ...
research
02/25/2020

Gödel's Sentence Is An Adversarial Example But Unsolvable

In recent years, different types of adversarial examples from different ...
research
08/13/2019

Construction of efficient detectors for character information recognition

We have developed and tested in numerical experiments a universal approa...
research
10/07/2020

Fortifying Toxic Speech Detectors Against Veiled Toxicity

Modern toxic speech detectors are incompetent in recognizing disguised o...

Please sign up or login with your details

Forgot password? Click here to reset