Patch of Invisibility: Naturalistic Black-Box Adversarial Attacks on Object Detectors

03/07/2023
by   Raz Lapid, et al.
0

Adversarial attacks on deep-learning models have been receiving increased attention in recent years. Work in this area has mostly focused on gradient-based techniques, so-called white-box attacks, wherein the attacker has access to the targeted model's internal parameters; such an assumption is usually unrealistic in the real world. Some attacks additionally use the entire pixel space to fool a given model, which is neither practical nor physical (i.e., real-world). On the contrary, we propose herein a gradient-free method that uses the learned image manifold of a pretrained generative adversarial network (GAN) to generate naturalistic physical adversarial patches for object detectors. We show that our proposed method works both digitally and physically.

READ FULL TEXT

page 1

page 4

page 6

page 7

page 8

research
10/31/2019

Making an Invisibility Cloak: Real World Adversarial Attacks on Object Detectors

We present a systematic study of adversarial attacks on state-of-the-art...
research
06/16/2022

Adversarial Patch Attacks and Defences in Vision-Based Tasks: A Survey

Adversarial attacks in deep learning models, especially for safety-criti...
research
03/03/2021

A Robust Adversarial Network-Based End-to-End Communications System With Strong Generalization Ability Against Adversarial Attacks

We propose a novel defensive mechanism based on a generative adversarial...
research
07/21/2019

Open DNN Box by Power Side-Channel Attack

Deep neural networks are becoming popular and important assets of many A...
research
06/25/2020

Can 3D Adversarial Logos Cloak Humans?

With the trend of adversarial attacks, researchers attempt to fool train...
research
06/08/2023

A Melting Pot of Evolution and Learning

We survey eight recent works by our group, involving the successful blen...
research
03/18/2022

DTA: Physical Camouflage Attacks using Differentiable Transformation Network

To perform adversarial attacks in the physical world, many studies have ...

Please sign up or login with your details

Forgot password? Click here to reset