CamoEnv: Transferable and environment-consistent adversarial camouflage in autonomous driving

IF 3.9 3区 计算机科学 Q2 COMPUTER SCIENCE, ARTIFICIAL INTELLIGENCE
Zijian Zhu , Xiao Yang , Hang Su , Shibao Zheng
{"title":"CamoEnv: Transferable and environment-consistent adversarial camouflage in autonomous driving","authors":"Zijian Zhu ,&nbsp;Xiao Yang ,&nbsp;Hang Su ,&nbsp;Shibao Zheng","doi":"10.1016/j.patrec.2024.12.003","DOIUrl":null,"url":null,"abstract":"<div><div>Adversarial camouflage has garnered significant attention in the security literature on autonomous driving. The ability to adapt to various angles makes adversarial camouflage important in autonomous driving attack. Traditional adversarial camouflages often exhibit unnatural and conspicuous appearances due to lacking consistency with the surrounding environment. They also have limited black-box transferability since the high-dimensional space of their explicit 3D object modeling induces overfitting problem. In this paper, we propose CamoEnv, a novel approach for creating environment-consistent and transferable adversarial camouflage. It not only maintains consistency as the object and viewpoint move, but also evades detection by various black-box models. Specifically, we present an object-environment integration method that generates object-environment-aligned images across varying viewpoints and maximizes their consistency. Additionally, we introduce an implicit color module that effectively reduces the parameter dimensionality, thus mitigating the overfitting problem and improving black-box transferability. Experimental results demonstrate that CamoEnv not only achieves superior environment consistency but also outperforms existing methods in black-box transferability by margins of 18.62% and 5.54% average attack success rate in digital and simulated attack experiments respectively.</div></div>","PeriodicalId":54638,"journal":{"name":"Pattern Recognition Letters","volume":"188 ","pages":"Pages 95-102"},"PeriodicalIF":3.9000,"publicationDate":"2025-02-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Pattern Recognition Letters","FirstCategoryId":"94","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S0167865524003581","RegionNum":3,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q2","JCRName":"COMPUTER SCIENCE, ARTIFICIAL INTELLIGENCE","Score":null,"Total":0}
引用次数: 0

Abstract

Adversarial camouflage has garnered significant attention in the security literature on autonomous driving. The ability to adapt to various angles makes adversarial camouflage important in autonomous driving attack. Traditional adversarial camouflages often exhibit unnatural and conspicuous appearances due to lacking consistency with the surrounding environment. They also have limited black-box transferability since the high-dimensional space of their explicit 3D object modeling induces overfitting problem. In this paper, we propose CamoEnv, a novel approach for creating environment-consistent and transferable adversarial camouflage. It not only maintains consistency as the object and viewpoint move, but also evades detection by various black-box models. Specifically, we present an object-environment integration method that generates object-environment-aligned images across varying viewpoints and maximizes their consistency. Additionally, we introduce an implicit color module that effectively reduces the parameter dimensionality, thus mitigating the overfitting problem and improving black-box transferability. Experimental results demonstrate that CamoEnv not only achieves superior environment consistency but also outperforms existing methods in black-box transferability by margins of 18.62% and 5.54% average attack success rate in digital and simulated attack experiments respectively.
求助全文
约1分钟内获得全文 求助全文
来源期刊
Pattern Recognition Letters
Pattern Recognition Letters 工程技术-计算机:人工智能
CiteScore
12.40
自引率
5.90%
发文量
287
审稿时长
9.1 months
期刊介绍: Pattern Recognition Letters aims at rapid publication of concise articles of a broad interest in pattern recognition. Subject areas include all the current fields of interest represented by the Technical Committees of the International Association of Pattern Recognition, and other developing themes involving learning and recognition.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信