Light Lies: Optical Adversarial Attack

06/18/2021
by   Kyu-Lim Kim, et al.
0

A significant amount of work has been done on adversarial attacks that inject imperceptible noise to images to deteriorate the image classification performance of deep models. However, most of the existing studies consider attacks in the digital (pixel) domain where an image acquired by an image sensor with sampling and quantization has been recorded. This paper, for the first time, introduces an optical adversarial attack, which physically alters the light field information arriving at the image sensor so that the classification model yields misclassification. More specifically, we modulate the phase of the light in the Fourier domain using a spatial light modulator placed in the photographic system. The operative parameters of the modulator are obtained by gradient-based optimization to maximize cross-entropy and minimize distortions. We present experiments based on both simulation and a real hardware optical system, from which the feasibility of the proposed optical attack is demonstrated. It is also verified that the proposed attack is completely different from common optical-domain distortions such as spherical aberration, defocus, and astigmatism in terms of both perturbation patterns and classification results.

READ FULL TEXT

page 3

page 5

page 6

page 9

research
04/29/2022

Adversarial attacks on an optical neural network

Adversarial attacks have been extensively investigated for machine learn...
research
12/15/2020

FAWA: Fast Adversarial Watermark Attack on Optical Character Recognition (OCR) Systems

Deep neural networks (DNNs) significantly improved the accuracy of optic...
research
12/10/2020

SPAA: Stealthy Projector-based Adversarial Attacks on Deep Image Classifiers

Light-based adversarial attacks aim to fool deep learning-based image cl...
research
10/26/2022

LP-BFGS attack: An adversarial attack based on the Hessian with limited pixels

Deep neural networks are vulnerable to adversarial attacks. Most white-b...
research
08/13/2021

Optical Adversarial Attack

We introduce OPtical ADversarial attack (OPAD). OPAD is an adversarial a...
research
02/23/2020

Fighting Fire with Light: A Case for Defending DDoS Attacks Using the Optical Layer

The DDoS attack landscape is growing at an unprecedented pace. Inspired ...
research
06/03/2020

Image Classification in the Dark using Quanta Image Sensors

State-of-the-art image classifiers are trained and tested using well-ill...

Please sign up or login with your details

Forgot password? Click here to reset