个人信息
教师姓名:姜文博
教师英文名称:Wenbo Jiang
教师拼音名称:jiangwenbo
电子邮箱:wenbo_jiang@uestc.edu.cn
入职时间:2023-08-01
学历:博士研究生毕业
性别:男
学位:工学博士学位
主要任职:副教授
-
所属院系: 计算机科学与工程学院(网络空间安全学院)
其他联系方式
暂无内容
论文成果
ITPATCH: An Invisible and Triggered Physical Adversarial Patch against Traffic Sign Recognition
发布时间:2025-05-23 点击次数:
所属单位:[1] University of Electronic Science and Technology of China, China; [2] Nanyang Technological University, Singapore; [3] City University of Hong Kong, Hong Kong
发表刊物:arXiv
摘要:Physical adversarial patches have emerged as a key adversarial attack to cause misclassification of traffic sign recognition (TSR) systems in the real world. However, existing adversarial patches have poor stealthiness and attack all vehicles indiscriminately once deployed. In this paper, we introduce an invisible and triggered physical adversarial patch (ITPATCH) with a novel attack vector, i.e., fluorescent ink, to advance the state-of-the-art. It applies carefully designed fluorescent perturbations to a target sign, an attacker can later trigger a fluorescent effect using invisible ultraviolet light, causing the TSR system to misclassify the sign and potentially resulting in traffic accidents. We conducted a comprehensive evaluation to investigate the effectiveness of ITPATCH, which shows a success rate of 98.31% in low-light conditions. Furthermore, our attack successfully bypasses five popular defenses and achieves a success rate of 96.72%. Copyright ? 2024, The Authors. All rights reserved.
文献类型:Preprint (PP)
是否译文:否

