Fetching the paper…
Reading the bibliography…
In Autonomous Driving (AD) systems, perception is both security and safety critical.
M. Mitchell, An introduction to genetic algorithms . MIT press, 1998
1998
Earlier work this paper cites.
“Intro to Rendering, Ray Casting,” https://ocw.mit.edu/courses/electrical-engineering-and-computer-science/6-837-computer-graphics-fall-2012/lecture-notes/MIT6_837F12_Lec11.pdf
2012
Earlier work this paper cites.
A. Geiger, P. Lenz, C. Stiller, and R. Urtasun, “Vision Meets Robotics: The KiTTi Dataset,” IJRR , 2013
2013
Earlier work this paper cites.
R. Ivanov, M. Pajic, and I. Lee, “Attack-resilient Sensor Fusion,” in DATE . IEEE, 2014, pp. 1–6
2014
Earlier work this paper cites.
J. Petit and S. E. Shladover, “Potential Cyberattacks on Automated Vehicles,” IEEE ITS , vol. 16, no. 2, pp. 546–556, 2014
2014
Earlier work this paper cites.
C. Szegedy, W. Zaremba, I. Sutskever, J. Bruna, D. Erhan, I. Goodfellow, and R. Fergus, “Intriguing Properties of Neural Networks,” in ICLR , 2014
2014
Earlier work this paper cites.
D. Z. Wang and I. Posner, “Voting for Voting in Online Point Cloud Object Detection,” in Robotics: Science and Systems , 2015
2015
Earlier work this paper cites.
I. Goodfellow, J. Shlens, and C. Szegedy, “Explaining and Harnessing Adversarial Examples,” in ICLR , 2015
2015
Earlier work this paper cites.
D. Maturana and S. Scherer, “Voxnet: A 3d convolutional neural network for real-time object recognition,” in IROS , 2015, pp. 922–928
2015
Earlier work this paper cites.
C. Yan, W. Xu, and J. Liu, “Can You Trust Autonomous Vehicles: Contactless Attacks against Sensors of Self-driving Vehicle,” DEF CON , vol. 24, no. 8, p. 109, 2016
2016
Earlier work this paper cites.
N. Papernot, P. D. McDaniel, S. Jha, M. Fredrikson, Z. B. Celik, and A. Swami, “The Limitations of Deep Learning in Adversarial Settings,” in Euro S&P , 2016
2016
Earlier work this paper cites.
S. Dominguez, A. Ali, G. Garcia, and P. Martinet, “Comparison of Lateral Controllers for Autonomous Vehicle: Experimental Results,” in 2016 IEEE 19th International Conference on Intelligent Transportation Systems (ITSC) . IEEE, 2016, pp. 1418–1423
2016
Earlier work this paper cites.
G. K. Dziugaite, Z. Ghahramani, and D. M. Roy, “A Study of the Effect of JPG Compression on Adversarial Images,” arXiv , 2016
2016
Earlier work this paper cites.
S.-M. Moosavi-Dezfooli, A. Fawzi, and P. Frossard, “DeepFool: a Simple and Accurate Method to Fool Deep Neural Networks,” in CVPR , 2016, pp. 2574–2582
2016
Earlier work this paper cites.
2017
Earlier work this paper cites.
K. Pei, Y. Cao, J. Yang, and S. Jana, “Deepxplore: Automated Whitebox Testing of Deep Learning Systems,” in SOSP , 2017, pp. 1–18
2017
Earlier work this paper cites.
X. Chen, H. Ma, J. Wan, B. Li, and T. Xia, “Multi-View 3D Object Detection Network for Autonomous Driving,” in CVPR , 2017
2017
Earlier work this paper cites.
X. Du, M. H. Ang, and D. Rus, “Car Detection for Autonomous Vehicle: LIDAR and Vision Fusion Approach Through Deep Learning Framework,” in IROS , 2017
2017
Earlier work this paper cites.
H. Shin, D. Kim, Y. Kwon, and Y. Kim, “Illusion and Dazzle: Adversarial Optical Channel Exploits against LiDARs for Automotive Applications,” in CHES . Springer, 2017, pp. 445–467
2017
Earlier work this paper cites.
M. Engelcke, D. Rao, D. Z. Wang, C. H. Tong, and I. Posner, “Vote3deep: Fast Object Detection in 3D Point Clouds using Efficient Convolutional Neural Networks,” in ICRA , 2017
2017
Earlier work this paper cites.
L. Chi and Y. Mu, “Deep Steering: Learning End-to-End Driving Model from Spatial and Temporal Visual Cues,” arXiv , 2017
2017
Earlier work this paper cites.
2017
Earlier work this paper cites.
“Avis will Service Waymo’s Self-driving Minivans,” https://www.theverge.com/2017/6/26/15873236/avis-waymo-google-self-driving-cars-vans
2017
Earlier work this paper cites.
N. Carlini and D. A. Wagner, “Towards Evaluating the Robustness of Neural Networks,” in IEEE S&P , 2017
2017
Earlier work this paper cites.
S. Li, X. Xu, L. Nie, and T.-S. Chua, “Laplacian-Steered Neural Style Transfer,” in ICMR , 2017, pp. 1716–1724
2017
Earlier work this paper cites.
“Baidu launches their open platform for autonomous cars–and we got to test it,” https://technode.com/2017/07/05/baidu-apollo-1-0-autonomous-cars-we-test-it/
2017
Earlier work this paper cites.
“Inside Waymo’s Secret World for Training Self-Driving Cars,” https://www.theatlantic.com/technology/archive/2017/08/inside-waymos-secret-testing-and-simulation-facilities/537648/
2017
Earlier work this paper cites.
D. Meng and H. Chen, “MagNet: a Two-Pronged Defense against Adversarial Examples,” in ACM CCS , 2017, pp. 135–147
2017
Earlier work this paper cites.
N. Carlini and D. Wagner, “MagNet and ”Efficient Defenses against Adversarial Attacks” are not Robust to Adversarial Examples,” arXiv , 2017
2017
Earlier work this paper cites.
W. He, J. Wei, X. Chen, N. Carlini, and D. Song, “Adversarial Example Defense: Ensembles of Weak Defenses are not Strong,” in USENIX WOOT , 2017
2017
Earlier work this paper cites.
S. O.-R. A. V. S. Committee et al. , “Taxonomy and Definitions for Terms Related to Driving Automation Systems for On-Road Motor Vehicles,” SAE International: Warrendale, PA, USA , 2018
2018
Earlier work this paper cites.
“Waymo has launched its commercial self-driving service in Phoenix - and it’s called ‘Waymo One’,” https://www.businessinsider.com/waymo-one-driverless-car-service-launches-in-phoenix-arizona-2018-12
2018
Earlier work this paper cites.
K. Eykholt, I. Evtimov, E. Fernandes, B. Li, A. Rahmati, F. Tramer, A. Prakash, T. Kohno, and D. Song, “Physical Adversarial Examples for Object Detectors,” in WOOT , 2018
2018
Earlier work this paper cites.
S.-T. Chen, C. Cornelius, J. Martin, and D. H. P. Chau, “Shapeshifter: Robust Physical Adversarial Attack on Faster R-CNN Object Detector,” in ECML PKDD , 2018
2018
Earlier work this paper cites.
Y. Tian, K. Pei, S. Jana, and B. Ray, “Deeptest: Automated Testing of Deep-Neural-Network-Driven Autonomous Cars,” in ICSE , 2018
2018
Earlier work this paper cites.
D. Frossard and R. Urtasun, “End-to-end Learning of Multi-sensor 3D Tracking by Detection,” in ICRA 2018 . IEEE, 2018, pp. 635–642
2018
Cited alongside, same era.
M. Liang, B. Yang, S. Wang, and R. Urtasun, “Deep Continuous Fusion for Multi-Sensor 3D Object Detection,” in ECCV , 2018
2018
Cited alongside, same era.
D. Xu, D. Anguelov, and A. Jain, “PointFusion: Deep Sensor Fusion for 3D Bounding Box Estimation,” in CVPR , 2018, pp. 244–253
2018
Cited alongside, same era.
J. Ku, M. Mozifian, J. Lee, A. Harakeh, and S. L. Waslander, “Joint 3D Proposal Generation and Object Detection from View Aggregation,” in IROS , 2018, pp. 1–8
2018
Cited alongside, same era.
X. Du, M. H. Ang, S. Karaman, and D. Rus, “A General Pipeline for 3D Detection of Vehicles,” in ICRA 2018 . IEEE, 2018, pp. 3194–3200
2018
Cited alongside, same era.
K. Eykholt, “Designing and Evaluating Physical Adversarial Attacks and Defenses for Machine Learning Algorithms,” Ph.D. dissertation, 2019
2019
Later among the works it cites.
“Baidu Launches Public Robotaxi Trial Operation,” https://www.globenewswire.com/news-release/2019/09/26/1921380/0/en/Baidu-Launches-Public-Robotaxi-Trial-Operation.html
2019
Later among the works it cites.
M. Alzantot, Y. Sharma, S. Chakraborty, H. Zhang, C.-J. Hsieh, and M. B. Srivastava, “Genattack: Practical Black-box Attacks with Gradient-free Optimization,” in GECCO , 2019
2019
Later among the works it cites.
H. Zhang and J. Wang, “Towards Adversarially Robust Object Detection,” in ICCV , 2019, pp. 421–430
2019
Later among the works it cites.
J. M. Cohen, E. Rosenfeld, and J. Z. Kolter, “Certified Adversarial Robustness via Randomized Smoothing,” ICML , 2019
2019
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
P. Guo, H. Kim, N. Virani, J. Xu, M. Zhu, and P. Liu, “RoboADS: Anomaly Detection against Sensor and Actuator Misbehaviors in Mobile Robots,” in DSN . IEEE, 2018, pp. 574–585
2018
Cited alongside, same era.
Y. Zhou and O. Tuzel, “Voxelnet: End-to-end learning for point cloud based 3d object detection,” in CVPR , 2018, pp. 4490–4499
2018
Cited alongside, same era.
J. Beltran, C. Guindel, F. M. Moreno, D. Cruzado, F. Garcia, and A. De La Escalera, “Birdnet: a 3D Object Detection Framework from Lidar Information,” in ITSC . IEEE, 2018, pp. 3517–3523
2018
Cited alongside, same era.
B. Yang, W. Luo, and R. Urtasun, “Pixor: Real-time 3d object detection from point clouds,” in CVPR 2018 , 2018, pp. 7652–7660
2018
Cited alongside, same era.
W. Xu, C. Yan, W. Jia, X. Ji, and J. Liu, “Analyzing and Enhancing the Security of Ultrasonic Sensors for Autonomous Vehicles,” IEEE Internet of Things Journal , vol. 5, no. 6, pp. 5015–5029, 2018
2018
Cited alongside, same era.
C. Xiao, B. Li, J.-Y. Zhu, W. He, M. Liu, and D. Song, “Generating Adversarial Examples with Adversarial Networks,” ArXiv , 2018
2018
Cited alongside, same era.
C. Xiao, J.-Y. Zhu, B. Li, W. He, M. Liu, and D. Song, “Spatially Transformed Adversarial Examples,” ICLR , 2018
2018
Cited alongside, same era.
Later among the works it cites.
L. Wang, J. Tang, and Q. Liao, “A Study on Radar Target Detection based on Deep Neural Networks,” IEEE Sensors Letters , pp. 1–4, 2019
2019
Later among the works it cites.
Y. Jia, Y. Lu, J. Shen, Q. A. Chen, H. Chen, Z. Zhong, and T. Wei, “Fooling Detection Alone is Not Enough: Adversarial Attack Against Multiple Object Tracking,” in ICLR , 2019
2019
Later among the works it cites.
C. Xiao, D. Yang, B. Li, J. Deng, and M. Liu, “MeshAdv: Adversarial Meshes for Visual Recognition,” in IEEE CVPR , 2019
2019
Later among the works it cites.
C. Xiang, C. R. Qi, and B. Li, “Generating 3D Adversarial Point Clouds,” in CVPR , 2019, pp. 9136–9144
2019
Later among the works it cites.
A. Shafahi, M. Najibi, M. A. Ghiasi, Z. Xu, J. Dickerson, C. Studer, L. S. Davis, G. Taylor, and T. Goldstein, “Adversarial Training for Free!” in NIPS , 2019, pp. 3358–3369
2019
Later among the works it cites.
D. Hendrycks, K. Lee, and M. Mazeika, “Using Pre-Training can Improve Model Robustness and Uncertainty,” ICML , 2019
2019
Later among the works it cites.
J. Sun, Y. Cao, Q. A. Chen, and Z. M. Mao, “Towards Robust LiDAR-based Perception in Autonomous Driving: General Black-box Adversarial Sensor Attack and Countermeasures,” in Usenix Security , 2020
2020
Later among the works it cites.
R. Quinonez, J. Giraldo, L. Salazar, and E. Bauman, “SAVIOR: Securing Autonomous Vehicles with Robust Physical Invariants,” in USENIX Security , 2020
2020
Later among the works it cites.
2020
Later among the works it cites.
E. Yurtsever, J. Lambert, A. Carballo, and K. Takeda, “A Survey of Autonomous Driving: Common Practices and Emerging Technologies,” IEEE Access , vol. 8, pp. 58 443–58 469, 2020
2020
Later among the works it cites.
H. Qiu, C. Xiao, L. Yang, X. Yan, H. Lee, and B. Li, “SemanticAdv: Generating Adversarial Examples via Attribute-conditioned Image Editing,” in ECCV . Springer, 2020, pp. 19–37
2020
Later among the works it cites.
B. Huang and H. Ling, “SPAA: Stealthy Projector-based Adversarial Attacks on Deep Image Classifiers,” ArXiv , 2020
2020
Later among the works it cites.
Y. Jo, S. Yang, and S. Joo Kim, “Investigating Loss Functions for Extreme Super-Resolution,” in CVPR Workshops , 2020, pp. 424–425
2020
Later among the works it cites.
T. Tsai, K. Yang, T.-Y. Ho, and Y. Jin, “Robust Adversarial Objects against Deep Learning Models,” in AAAI , 2020
2020
Later among the works it cites.
Y. Feng, B. Wu, Y. Fan, L. Liu, Z. Li, and S. Xia, “CG-ATTACK: Modeling the Conditional Distribution of Adversarial Perturbations to Boost Black-Box Attack,” 2020
2020
Later among the works it cites.
R. Alika, E. M. Mellouli, and E. H. Tissir, “Optimization of Higher-Order Sliding Mode Control Parameter using Particle Swarm Optimization for Lateral Dynamics of Autonomous Vehicles,” in IRASET . IEEE, 2020, pp. 1–6
2020
Later among the works it cites.
2020
Later among the works it cites.
E. Wong, L. Rice, and J. Z. Kolter, “Fast is Better than Free: Revisiting Adversarial Training,” ICLR , 2020
2020
Later among the works it cites.
G. Yang, T. Duan, E. Hu, H. Salman, I. Razenshteyn, and J. Li, “Randomized Smoothing of All Shapes and Sizes,” ICML , 2020
2020
Later among the works it cites.
X. Zhang, N. Wang, H. Shen, S. Ji, X. Luo, and T. Wang, “Interpretable Deep Learning under Fire,” in USENIX Security , 2020
2020
Later among the works it cites.
B. Nassi, D. Nassi, R. Ben-Netanel, Y. Mirsky, O. Drokin, and Y. Elovici, “Phantom of the ADAS: Phantom Attacks on Driver-Assistance Systems,” in IACR , 2020
2020
Later among the works it cites.
“Model Hacking ADAS to Pave Safer Roads for Autonomous Vehicles,” https://www.mcafee.com/blogs/other-blogs/mcafee-labs/model-hacking-adas-to-pave-safer-roads-for-autonomous-vehicles/ , 2020
2020
Later among the works it cites.
J. Shen, J. Y. Won, and Q. A. Chen, “Drift with Devil: Security of Multi-Sensor Fusion based Localization in High-Level Autonomous Driving under GPS Spoofing,” in Usenix Security , 2020
2020
Later among the works it cites.
T. Sato, J. Shen, N. Wang, Y. J. Jia, X. Lin, and Q. A. Chen, “Hold Tight and Never Let Go: Security of Deep Learning based Automated Lane Centering under Physical-World Attack,” ArXiv , 2020
2020
Later among the works it cites.
K. Lee, Z. Chen, X. Yan, R. Urtasun, and E. Yumer, “ShapeAdv: Generating Shape-Aware Adversarial 3D Point Clouds,” ArXiv , 2020
2020
Later among the works it cites.
T. Chen, S. Liu, S. Chang, Y. Cheng, L. Amini, and Z. Wang, “Adversarial Robustness: From Self-Supervised Pre-Training to Fine-Tuning,” in CVPR , 2020, pp. 699–708
2020
Later among the works it cites.
T. Sato, J. Shen, N. Wang, Y. J. Jia, X. Lin, and Q. A. Chen, “Deployability Improvement, Stealthiness User Study, and Safety Impact Assessment on Real Vehicle for Dirty Road Patch Attack,” in AutoSec Workshop at NDSS , 2021
2021
Closest in time.
H. Liang, R. Jiao, T. Sato, J. Shen, Q. A. Chen, and Q. Zhu, “End-to-End Analysis of Adversarial Attacks to Automated Lane Centering Systems,” in AutoSec Workshop at NDSS , 2021
2021
Closest in time.
K. Tang, J. Shen, and Q. A. Chen, “Fooling Perception via Location: A Case of Region-of-Interest Attacks on Traffic Light Detection in Autonomous Driving,” in AutoSec Workshop at NDSS , 2021
2021
Closest in time.