arrow
返回

Adversarial attack algorithm for traffic sign recognition

delete2022-10-26
delete2
PRE
AI
J
Juan Wang
L
Lei Shi *
Y
Yang Zhao
H
Haoxi Zhang
E
Edward Szczerbicki
DOI:10.1007/s11042-022-14067-5delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Deep learning suffers from the threat of adversarial attacks, and its defense methods have become a research hotspot. In all applications of deep learning, intelligent driving is an important and promising one, facing serious threat of adversarial attack in the meanwhile. To address the adversarial attack, this paper takes the traffic sign recognition as a typical object, for it is the core function of intelligent driving. Considering that the black box attack does not need to know the internal characteristics of the model, it can have more practical value. However, the existing black box attack algorithm has high visit time and low efficiency in attacking sample generation. In this regard, the SimBA algorithm with high efficiency is selected and improved according to the characteristics of traffic signs, named the L-SimBA algorithm. According to the graphic characteristics of traffic signs that are already known, L-SimBA algorithm limits the search subspace consciously and specifies the set of search directions, and that is the core idea of it. By this way, L-SimBA algorithm can generate adversarial samples faster. Experimental comparison shows that in the field of traffic sign recognition, L-SimBA algorithm is better than SimBA algorithm. On the premise of obtaining similar quality adversarial attack samples, the success rate of adversarial measures gets higher, and the number of model visits reduces considerably, thus the attack efficiency of the algorithm improves greatly.
Keyword:
Adversarial attack
Black box
Traffic sign recognition
Algorithm security

期刊

Multimedia Tools and Applications 封面图
Multimedia Tools and Applications
IF:
3
论文数:
1.9W
被引数:
3.2W

机构

C
Chengdu University of Information Technology
学者数:
2.9K
论文数: 2.3K
被引数: 2.4K
G
Gdansk University of Technology
学者数:
3.5K
论文数: 3.1K
被引数: 7.3K
引用论文

引用论文

Search-and-Attack: Temporally Sparse Adversarial Perturbations on Videos
err2021-01-01
err1
errOAAI
errHeo, Hwan; Ko, Dohwan; Lee, Jaewon; Hong, Youngjoon; Kim, Hyunwoo J.
err分享
err收藏
Cyclic Defense GAN Against Speech Adversarial Attacks针对语音对抗攻击的循环防御GAN
err2021-01-01
err9
errOAAI
errEsmaeilpour, Mohammad; Cardinal, Patrick; Koerich, Alessandro Lameiras
err分享
err收藏
err分享
err收藏
err分享
err收藏
err分享
err收藏
Back in Black: A Comparative Evaluation of Recent State-Of-The-Art Black-Box Attacks
err2022-01-01
err10
errOAAI
errMahmood, Kaleel; Mahmood, Rigel; Rathbun, Ethan; van Dijk, Marten
err分享
err收藏
err分享
err收藏
学者 查看更多内容