Fetching the paper…
Reading the bibliography…
Deep neural networks (DNNs) have found widespread applications in interpreting remote sensing (RS) imagery.
Y. Zhu, C. Miao, T. Zheng, F. Hajiaghajani, L. Su, and C. Qiao, “Can we use arbitrary objects to attack lidar perception in autonomous driving?” in Proceedings of the 2021 ACM SIGSAC Conference on Computer and Communications Security , 2021, pp. 1945–1960
1960
Earlier work this paper cites.
C. Szegedy, W. Zaremba, I. Sutskever, J. Bruna, D. Erhan, I. Goodfellow, and R. Fergus, “Intriguing properties of neural networks,” in International Conference on Learning Representations , 2014
2014
Earlier work this paper cites.
S. Ren, K. He, R. Girshick, and J. Sun, “Faster r-cnn: Towards real-time object detection with region proposal networks,” in Advances in Neural Information Processing Systems , vol. 28, 2015
2015
Earlier work this paper cites.
O. Ronneberger, P. Fischer, and T. Brox, “U-net: Convolutional networks for biomedical image segmentation,” in Medical Image Computing and Computer-Assisted Intervention–MICCAI 2015: 18th International Conference, Munich, Germany, October 5-9, 2015, Proceedings, Part III 18 . Springer, 2015, pp. 234–241
2015
Earlier work this paper cites.
I. Goodfellow, J. Shlens, and C. Szegedy, “Explaining and harnessing adversarial examples,” in International Conference on Learning Representations , 2015
2015
Earlier work this paper cites.
K. He, X. Zhang, S. Ren, and J. Sun, “Deep residual learning for image recognition,” in Proceedings of the IEEE conference on computer vision and pattern recognition , 2016, pp. 770–778
2016
Earlier work this paper cites.
M. Sharif, S. Bhagavatula, L. Bauer, and M. K. Reiter, “Accessorize to a crime: Real and stealthy attacks on state-of-the-art face recognition,” in Proceedings of the 2016 acm sigsac conference on computer and communications security , 2016, pp. 1528–1540
2016
Earlier work this paper cites.
S.-M. Moosavi-Dezfooli, A. Fawzi, and P. Frossard, “Deepfool: a simple and accurate method to fool deep neural networks,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2016, pp. 2574–2582
2016
Earlier work this paper cites.
N. Papernot, P. McDaniel, S. Jha, M. Fredrikson, Z. B. Celik, and A. Swami, “The limitations of deep learning in adversarial settings,” in 2016 IEEE European symposium on security and privacy (EuroS&P) . IEEE, 2016, pp. 372–387
2016
Earlier work this paper cites.
S. Zagoruyko and N. Komodakis, “Wide residual networks,” arXiv:1605.07146 , 2016
2016
Earlier work this paper cites.
W. Liu, D. Anguelov, D. Erhan, C. Szegedy, S. Reed, C.-Y. Fu, and A. C. Berg, “Ssd: Single shot multibox detector,” in European Conference on Computer Vision . Springer, 2016, pp. 21–37
2016
Earlier work this paper cites.
A. Krizhevsky, I. Sutskever, and G. E. Hinton, “Imagenet classification with deep convolutional neural networks,” Communications of the ACM , vol. 60, no. 6, pp. 84–90, 2017
2017
Earlier work this paper cites.
K. He, G. Gkioxari, P. Dollár, and R. Girshick, “Mask r-cnn,” in Proceedings of the IEEE/CVF International Conference on Computer Vision , 2017, pp. 2961–2969
2017
Earlier work this paper cites.
T. B. Brown, D. Mané, A. Roy, M. Abadi, and J. Gilmer, “Adversarial patch,” arXiv:1712.09665 , 2017
2017
Earlier work this paper cites.
N. Carlini and D. Wagner, “Towards evaluating the robustness of neural networks,” in 2017 ieee symposium on security and privacy (sp) . Ieee, 2017, pp. 39–57
2017
Earlier work this paper cites.
2017
Earlier work this paper cites.
N. Papernot, P. McDaniel, I. Goodfellow, S. Jha, Z. B. Celik, and A. Swami, “Practical black-box attacks against machine learning,” in Proceedings of the 2017 ACM on Asia conference on computer and communications security , 2017, pp. 506–519
2017
Earlier work this paper cites.
S.-M. Moosavi-Dezfooli, A. Fawzi, O. Fawzi, and P. Frossard, “Universal adversarial perturbations,” in Proceedings of the IEEE conference on computer vision and pattern recognition , 2017, pp. 1765–1773
2017
Earlier work this paper cites.
P.-Y. Chen, H. Zhang, Y. Sharma, J. Yi, and C.-J. Hsieh, “Zoo: Zeroth order optimization based black-box attacks to deep neural networks without training substitute models,” in Proceedings of the 10th ACM workshop on artificial intelligence and security , 2017, pp. 15–26
2017
Earlier work this paper cites.
Y. Liu, X. Chen, C. Liu, and D. Song, “Delving into transferable adversarial examples and black-box attacks,” in International Conference on Learning Representations , 2017
2017
Earlier work this paper cites.
C. Xie, J. Wang, Z. Zhang, Y. Zhou, L. Xie, and A. Yuille, “Adversarial examples for semantic segmentation and object detection,” in Proceedings of the IEEE/CVF International Conference on Computer Vision , 2017, pp. 1369–1378
2017
Earlier work this paper cites.
J. Redmon and A. Farhadi, “Yolo9000: better, faster, stronger,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2017, pp. 7263–7271
2017
Earlier work this paper cites.
J. Lu, H. Sibai, and E. Fabry, “Adversarial examples that fool detectors,” arXiv:1712.02494 , 2017
2017
Earlier work this paper cites.
G.-S. Xia, J. Hu, F. Hu, B. Shi, X. Bai, Y. Zhong, L. Zhang, and X. Lu, “Aid: A benchmark data set for performance evaluation of aerial scene classification,” IEEE Transactions on Geoscience and Remote Sensing , vol. 55, no. 7, pp. 3965–3981, 2017
2017
Earlier work this paper cites.
S. Xie, R. Girshick, P. Dollár, Z. Tu, and K. He, “Aggregated residual transformations for deep neural networks,” in Proceedings of the IEEE conference on computer vision and pattern recognition , 2017, pp. 1492–1500
2017
Earlier work this paper cites.
G. Huang, Z. Liu, L. Van Der Maaten, and K. Q. Weinberger, “Densely connected convolutional networks,” in Proceedings of the IEEE conference on computer vision and pattern recognition , 2017, pp. 4700–4708
2017
Earlier work this paper cites.
T.-Y. Lin, P. Goyal, R. Girshick, K. He, and P. Dollár, “Focal loss for dense object detection,” in Proceedings of the IEEE/CVF International Conference on Computer Vision , 2017, pp. 2980–2988
2017
Earlier work this paper cites.
J. Redmon and A. Farhadi, “Yolov3: An incremental improvement,” arXiv:1804.02767 , 2018
2018
Earlier work this paper cites.
A. Kurakin, I. J. Goodfellow, and S. Bengio, “Adversarial examples in the physical world,” in Artificial intelligence safety and security . Chapman and Hall/CRC, 2018, pp. 99–112
2018
Earlier work this paper cites.
Y. Dong, F. Liao, T. Pang, H. Su, J. Zhu, X. Hu, and J. Li, “Boosting adversarial attacks with momentum,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2018, pp. 9185–9193
2018
Earlier work this paper cites.
2018
Earlier work this paper cites.
N. Akhtar and A. Mian, “Threat of adversarial attacks on deep learning in computer vision: A survey,” IEEE Access , vol. 6, pp. 14 410–14 430, 2018
2018
Earlier work this paper cites.
G. F. Elsayed, I. Goodfellow, and J. Sohl-Dickstein, “Adversarial reprogramming of neural networks,” in International Conference on Learning Representations , 2018
2018
Earlier work this paper cites.
A. Madry, A. Makelov, L. Schmidt, D. Tsipras, and A. Vladu, “Towards deep learning models resistant to adversarial attacks,” in International Conference on Learning Representations , 2018
2018
Earlier work this paper cites.
P.-Y. Chen, Y. Sharma, H. Zhang, J. Yi, and C.-J. Hsieh, “Ead: elastic-net attacks to deep neural networks via adversarial examples,” in Proceedings of the AAAI conference on artificial intelligence , vol. 32, no. 1, 2018
2018
Earlier work this paper cites.
D. Karmon, D. Zoran, and Y. Goldberg, “Lavan: Localized and visible adversarial noise,” in International Conference on Machine Learning . PMLR, 2018, pp. 2507–2515
2018
Earlier work this paper cites.
A. Ilyas, L. Engstrom, A. Athalye, and J. Lin, “Black-box adversarial attacks with limited queries and information,” in International conference on machine learning . PMLR, 2018, pp. 2137–2146
2018
Earlier work this paper cites.
A. Shafahi, W. R. Huang, M. Najibi, O. Suciu, C. Studer, T. Dumitras, and T. Goldstein, “Poison frogs! targeted clean-label poisoning attacks on neural networks,” Advances in neural information processing systems , vol. 31, 2018
2018
Earlier work this paper cites.
K. R. Mopuri, A. Ganeshan, and R. V. Babu, “Generalizable data-free objective for crafting universal adversarial perturbations,” IEEE transactions on pattern analysis and machine intelligence , vol. 41, no. 10, pp. 2452–2465, 2018
2018
Earlier work this paper cites.
K. Eykholt, I. Evtimov, E. Fernandes, B. Li, A. Rahmati, C. Xiao, A. Prakash, T. Kohno, and D. Song, “Robust physical-world attacks on deep learning visual classification,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2018, pp. 1625–1634
2018
Earlier work this paper cites.
A. Athalye, L. Engstrom, A. Ilyas, and K. Kwok, “Synthesizing robust adversarial examples,” in International conference on machine learning . PMLR, 2018, pp. 284–293
2018
Earlier work this paper cites.
2018
Earlier work this paper cites.
D. Song, K. Eykholt, I. Evtimov, E. Fernandes, B. Li, A. Rahmati, F. Tramer, A. Prakash, and T. Kohno, “Physical adversarial examples for object detectors,” in 12th USENIX workshop on offensive technologies (WOOT 18) , 2018
2018
Earlier work this paper cites.
W. Czaja, N. Fendley, M. Pekala, C. Ratto, and I.-J. Wang, “Adversarial examples in remote sensing,” in Proceedings of the 26th ACM SIGSPATIAL International Conference on Advances in Geographic Information Systems , 2018, pp. 408–411
2018
Earlier work this paper cites.
2018
Earlier work this paper cites.
M. Sandler, A. Howard, M. Zhu, A. Zhmoginov, and L.-C. Chen, “Mobilenetv2: Inverted residuals and linear bottlenecks,” in Proceedings of the IEEE conference on computer vision and pattern recognition , 2018, pp. 4510–4520
2018
Earlier work this paper cites.
N. Ma, X. Zhang, H.-T. Zheng, and J. Sun, “Shufflenet v2: Practical guidelines for efficient cnn architecture design,” in Proceedings of the European conference on computer vision (ECCV) , 2018, pp. 116–131
2018
Earlier work this paper cites.
G.-S. Xia, X. Bai, J. Ding, Z. Zhu, S. Belongie, J. Luo, M. Datcu, M. Pelillo, and L. Zhang, “Dota: A large-scale dataset for object detection in aerial images,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2018, pp. 3974–3983
2018
Earlier work this paper cites.
D. Hendrycks and T. Dietterich, “Benchmarking neural network robustness to common corruptions and perturbations,” in International Conference on Learning Representations , 2019
2019
Earlier work this paper cites.
S. Qiu, Q. Liu, S. Zhou, and C. Wu, “Review of artificial intelligence adversarial attack and defense technologies,” Applied Sciences , vol. 9, no. 5, p. 909, 2019
2019
Earlier work this paper cites.
M. Sharif, S. Bhagavatula, L. Bauer, and M. K. Reiter, “A general framework for adversarial examples with objectives,” ACM Transactions on Privacy and Security (TOPS) , vol. 22, no. 3, pp. 1–30, 2019
2019
Earlier work this paper cites.
A. Ilyas, S. Santurkar, D. Tsipras, L. Engstrom, B. Tran, and A. Madry, “Adversarial examples are not bugs, they are features,” in Advances in Neural Information Processing Systems , vol. 32, 2019
2019
Earlier work this paper cites.
S. Thys, W. Van Ranst, and T. Goedemé, “Fooling automated surveillance cameras: adversarial patches to attack person detection,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition workshops , 2019, pp. 49–55
2019
Earlier work this paper cites.
M. Pautov, G. Melnikov, E. Kaziakhmedov, K. Kireev, and A. Petiushko, “On adversarial patches: real-world attack on arcface-100 face recognition system,” in 2019 International Multi-Conference on Engineering, Computer and Information Sciences (SIBIRCON) . IEEE, 2019, pp. 0391–0396
2019
Earlier work this paper cites.
Z. Wang, S. Zheng, M. Song, Q. Wang, A. Rahimpour, and H. Qi, “advpattern: physical-world attacks on deep person re-identification via adversarially transformable patterns,” in Proceedings of the IEEE/CVF International Conference on Computer Vision , 2019, pp. 8341–8350
2019
Earlier work this paper cites.
C.-C. Tu, P. Ting, P.-Y. Chen, S. Liu, H. Zhang, J. Yi, C.-J. Hsieh, and S.-M. Cheng, “Autozoom: Autoencoder-based zeroth order optimization method for attacking black-box neural networks,” in Proceedings of the AAAI Conference on Artificial Intelligence , vol. 33, no. 01, 2019, pp. 742–749
2019
Earlier work this paper cites.
Z.-A. Zhu, Y.-Z. Lu, and C.-K. Chiang, “Generating adversarial examples by makeup attacks on face recognition,” in 2019 IEEE International Conference on Image Processing (ICIP) . IEEE, 2019, pp. 2516–2520
2019
Earlier work this paper cites.
A. Ilyas, L. Engstrom, and A. Madry, “Prior convictions: Black-box adversarial attacks with bandits and priors,” in International Conference on Learning Representations , 2019
2019
Earlier work this paper cites.
J. Su, D. V. Vargas, and K. Sakurai, “One pixel attack for fooling deep neural networks,” IEEE Transactions on Evolutionary Computation , vol. 23, no. 5, pp. 828–841, 2019
2019
Earlier work this paper cites.
Y. Li, L. Li, L. Wang, T. Zhang, and B. Gong, “Nattack: Learning the distributions of adversarial examples for an improved black-box attack on deep neural networks,” in International Conference on Machine Learning . PMLR, 2019, pp. 3866–3876
2019
Earlier work this paper cites.
A. Demontis, M. Melis, M. Pintor, M. Jagielski, B. Biggio, A. Oprea, C. Nita-Rotaru, and F. Roli, “Why do adversarial attacks transfer? explaining transferability of evasion and poisoning attacks,” in 28th USENIX security symposium (USENIX security 19) , 2019, pp. 321–338
2019
Earlier work this paper cites.
Q. Huang, I. Katsman, H. He, Z. Gu, S. Belongie, and S.-N. Lim, “Enhancing adversarial example transferability with an intermediate level attack,” in Proceedings of the IEEE/CVF international conference on computer vision , 2019, pp. 4733–4742
2019
Earlier work this paper cites.
C. Xie, Z. Zhang, Y. Zhou, S. Bai, J. Wang, Z. Ren, and A. L. Yuille, “Improving transferability of adversarial examples with input diversity,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2019, pp. 2730–2739
2019
Earlier work this paper cites.
S. Tang, X. Huang, M. Chen, C. Sun, and J. Yang, “Adversarial attack type i: Cheat classifiers by significant changes,” IEEE transactions on pattern analysis and machine intelligence , vol. 43, no. 3, pp. 1100–1109, 2019
2019
Earlier work this paper cites.
X. Zeng, C. Liu, Y.-S. Wang, W. Qiu, L. Xie, Y.-W. Tai, C.-K. Tang, and A. L. Yuille, “Adversarial attacks beyond the image space,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2019, pp. 4302–4311
2019
Earlier work this paper cites.
S. T. Jan, J. Messou, Y.-C. Lin, J.-B. Huang, and G. Wang, “Connecting the digital and physical world: Improving the robustness of adversarial attacks,” in Proceedings of the AAAI Conference on Artificial Intelligence , vol. 33, no. 01, 2019, pp. 962–969
2019
Earlier work this paper cites.
A. Liu, X. Liu, J. Fan, Y. Ma, A. Zhang, H. Xie, and D. Tao, “Perceptual-sensitive gan for generating adversarial patches,” in Proceedings of the AAAI conference on artificial intelligence , vol. 33, no. 01, 2019, pp. 1028–1035
2019
Earlier work this paper cites.
S.-T. Chen, C. Cornelius, J. Martin, and D. H. Chau, “Shapeshifter: Robust physical adversarial attack on faster r-cnn object detector,” in Machine Learning and Knowledge Discovery in Databases: European Conference, ECML PKDD 2018, Dublin, Ireland, September 10–14, 2018, Proceedings, Part I 18 . Springer, 2019, pp. 52–68
2019
Earlier work this paper cites.
Y. Zhang, H. Foroosh, P. David, and B. Gong, “Camou: Learning physical vehicle camouflages to adversarially attack detectors in the wild,” in International Conference on Learning Representations , 2019
2019
Earlier work this paper cites.
Y. Dong, H. Su, B. Wu, Z. Li, W. Liu, T. Zhang, and J. Zhu, “Efficient decision-based black-box adversarial attacks on face recognition,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2019, pp. 7714–7722
2019
Earlier work this paper cites.
T. Gu, K. Liu, B. Dolan-Gavitt, and S. Garg, “Badnets: Evaluating backdooring attacks on deep neural networks,” IEEE Access , vol. 7, pp. 47 230–47 244, 2019
2019
Earlier work this paper cites.
B. Recht, R. Roelofs, L. Schmidt, and V. Shankar, “Do imagenet classifiers generalize to imagenet?” in International conference on machine learning . PMLR, 2019, pp. 5389–5400
2019
Earlier work this paper cites.
A. Barbu, D. Mayo, J. Alverio, W. Luo, C. Wang, D. Gutfreund, J. Tenenbaum, and B. Katz, “Objectnet: A large-scale bias-controlled dataset for pushing the limits of object recognition models,” Advances in neural information processing systems , vol. 32, 2019
2019
Earlier work this paper cites.
H. Wang, S. Ge, Z. Lipton, and E. P. Xing, “Learning robust global representations by penalizing local predictive power,” Advances in Neural Information Processing Systems , vol. 32, 2019
2019
Earlier work this paper cites.
A. Howard, M. Sandler, G. Chu, L.-C. Chen, B. Chen, M. Tan, W. Wang, Y. Zhu, R. Pang, V. Vasudevan et al. , “Searching for mobilenetv3,” in Proceedings of the IEEE/CVF international conference on computer vision , 2019, pp. 1314–1324
2019
Earlier work this paper cites.
Z. Cai and N. Vasconcelos, “Cascade r-cnn: high quality object detection and instance segmentation,” IEEE Transactions on Pattern Analysis and Machine Intelligence , vol. 43, no. 5, pp. 1483–1498, 2019
2019
Earlier work this paper cites.
X. Zhang, F. Wan, C. Liu, R. Ji, and Q. Ye, “Freeanchor: Learning to match anchors for visual object detection,” in Advances in Neural Information Processing Systems , vol. 32, 2019
2019
Earlier work this paper cites.
C. Zhu, Y. He, and M. Savvides, “Feature selective anchor-free module for single-shot object detection,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2019, pp. 840–849
2019
Earlier work this paper cites.
Z. Yang, S. Liu, H. Hu, L. Wang, and S. Lin, “Reppoints: Point set representation for object detection,” in Proceedings of the IEEE/CVF International Conference on Computer Vision , 2019, pp. 9657–9666
2019
Earlier work this paper cites.
K. Li, G. Wan, G. Cheng, L. Meng, and J. Han, “Object detection in optical remote sensing images: A survey and a new benchmark,” ISPRS journal of photogrammetry and remote sensing , vol. 159, pp. 296–307, 2020
2020
Earlier work this paper cites.
R. Taori, A. Dave, V. Shankar, N. Carlini, B. Recht, and L. Schmidt, “Measuring robustness to natural distribution shifts in image classification,” in Advances in Neural Information Processing Systems , vol. 33, 2020, pp. 18 583–18 599
2020
Earlier work this paper cites.
Y. Dong, Q.-A. Fu, X. Yang, T. Pang, H. Su, Z. Xiao, and J. Zhu, “Benchmarking adversarial robustness on image classification,” in proceedings of the IEEE/CVF conference on computer vision and pattern recognition , 2020, pp. 321–331
2020
Earlier work this paper cites.
X. Huang, D. Kroening, W. Ruan, J. Sharp, Y. Sun, E. Thamo, M. Wu, and X. Yi, “A survey of safety and trustworthiness of deep neural networks: Verification, testing, adversarial attack and defence, and interpretability,” Computer Science Review , vol. 37, p. 100270, 2020
2020
Earlier work this paper cites.
A. Serban, E. Poll, and J. Visser, “Adversarial examples on object recognition: A comprehensive survey,” ACM Computing Surveys (CSUR) , vol. 53, no. 3, pp. 1–38, 2020
2020
Earlier work this paper cites.
Z. Wu, S.-N. Lim, L. S. Davis, and T. Goldstein, “Making an invisibility cloak: Real world adversarial attacks on object detectors,” in European Conference on Computer Vision . Springer, 2020, pp. 1–17
2020
Earlier work this paper cites.
2020
Earlier work this paper cites.
J. Lin, C. Song, K. He, L. Wang, and J. E. Hopcroft, “Nesterov accelerated gradient and scale invariance for adversarial attacks,” in International Conference on Learning Representations , 2020
2020
Earlier work this paper cites.
F. Croce and M. Hein, “Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks,” in International conference on machine learning . PMLR, 2020, pp. 2206–2216
2020
Earlier work this paper cites.
H. Wang, G. Li, X. Liu, and L. Lin, “A hamiltonian monte carlo method for probabilistic adversarial attack and learning,” IEEE Transactions on Pattern Analysis and Machine Intelligence , vol. 44, no. 4, pp. 1725–1737, 2020
2020
Earlier work this paper cites.
J. Du, H. Zhang, J. T. Zhou, Y. Yang, and J. Feng, “Query-efficient meta attack to deep neural networks,” in International Conference on Learning Representations , 2020
2020
Earlier work this paper cites.
L. Wang, K. Yang, W. Wang, R. Wang, and A. Ye, “Mgaattack: Toward more query-efficient black-box attack by microbial genetic algorithm,” in Proceedings of the 28th ACM International Conference on Multimedia , 2020, pp. 2229–2236
2020
Earlier work this paper cites.
J. Chen, M. I. Jordan, and M. J. Wainwright, “Hopskipjumpattack: A query-efficient decision-based attack,” in 2020 ieee symposium on security and privacy (sp) . IEEE, 2020, pp. 1277–1294
2020
Earlier work this paper cites.
Y. Fan, B. Wu, T. Li, Y. Zhang, M. Li, Z. Li, and Y. Yang, “Sparse adversarial attack via perturbation factorization,” in Computer Vision–ECCV 2020: 16th European Conference, Glasgow, UK, August 23–28, 2020, Proceedings, Part XXII 16 . Springer, 2020, pp. 35–50
2020
Earlier work this paper cites.
S. Chen, Z. He, C. Sun, J. Yang, and X. Huang, “Universal adversarial attack on attention and the resulting dataset damagenet,” IEEE Transactions on Pattern Analysis and Machine Intelligence , vol. 44, no. 4, pp. 2188–2197, 2020
2020
Earlier work this paper cites.
R. Duan, X. Ma, Y. Wang, J. Bailey, A. K. Qin, and Y. Yang, “Adversarial camouflage: Hiding physical-world attacks with natural styles,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2020, pp. 1000–1008
2020
Cited alongside, same era.
2020
Cited alongside, same era.
H. Zhang, W. Zhou, and H. Li, “Contextual adversarial attacks for object detection,” in 2020 IEEE International Conference on Multimedia and Expo (ICME) . IEEE, 2020, pp. 1–6
2020
Cited alongside, same era.
Y. Liu, X. Zhu, and X. Huang, “Efficient warm restart adversarial attack for object detection,” 2020
2020
Cited alongside, same era.
Y. Dong, S. Ruan, H. Su, C. Kang, X. Wei, and J. Zhu, “Viewfool: Evaluating the robustness of visual recognition to adversarial viewpoints,” in Advances in Neural Information Processing Systems , 2022
2022
Later among the works it cites.
2022
Later among the works it cites.
2022
Later among the works it cites.
——, “Adversarial zoom lens: A novel physical-world attack to dnns,” arXiv:2206.12251 , 2022
2022
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
K.-H. Chow, L. Liu, M. Loper, J. Bae, M. E. Gursoy, S. Truex, W. Wei, and Y. Wu, “Adversarial objectness gradient attacks in real-time object detection systems,” in 2020 Second IEEE International Conference on Trust, Privacy and Security in Intelligent Systems and Applications (TPS-ISA) . IEEE, 2020, pp. 263–272
2020
Cited alongside, same era.
L. Huang, C. Gao, Y. Zhou, C. Xie, A. L. Yuille, C. Zou, and N. Liu, “Universal physical camouflage attacks on object detectors,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2020, pp. 720–729
2020
Cited alongside, same era.
D.-L. Nguyen, S. S. Arora, Y. Wu, and H. Yang, “Adversarial light projection attacks on face recognition systems: A feasibility study,” in Proceedings of the IEEE/CVF conference on computer vision and pattern recognition workshops , 2020, pp. 814–815
2020
Cited alongside, same era.
J. Bai, B. Chen, Y. Li, D. Wu, W. Guo, S.-t. Xia, and E.-h. Yang, “Targeted attack for deep hashing based retrieval,” in Computer Vision–ECCV 2020: 16th European Conference, Glasgow, UK, August 23–28, 2020, Proceedings, Part I 16 . Springer, 2020, pp. 618–634
2020
Cited alongside, same era.
S. Bai, Y. Li, Y. Zhou, Q. Li, and P. H. Torr, “Adversarial metric attack and defense for person re-identification,” IEEE Transactions on Pattern Analysis and Machine Intelligence , vol. 43, no. 6, pp. 2119–2126, 2020
2020
Cited alongside, same era.
A. Liu, J. Wang, X. Liu, B. Cao, C. Zhang, and H. Yu, “Bias-based universal adversarial patch attack for automatic check-out,” in Computer Vision–ECCV 2020: 16th European Conference, Glasgow, UK, August 23–28, 2020, Proceedings, Part XIII 16 . Springer, 2020, pp. 395–410
2020
Cited alongside, same era.
J. S. Sun, Y. C. Cao, Q. A. Chen, and Z. M. Mao, “Towards robust lidar-based perception in autonomous driving: General black-box adversarial sensor attack and countermeasures,” in USENIX Security Symposium (Usenix Security’20) , 2020
2020
Cited alongside, same era.
J. Tu, M. Ren, S. Manivasagam, M. Liang, B. Yang, R. Du, F. Cheng, and R. Urtasun, “Physically realizable adversarial examples for lidar object detection,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2020, pp. 13 716–13 725
2020
Cited alongside, same era.
Z. Hu, S. Huang, X. Zhu, F. Sun, B. Zhang, and X. Hu, “Adversarial texture for fooling person detectors in the physical world,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2022, pp. 13 307–13 316
2022
Later among the works it cites.
X. Zhu, Z. Hu, S. Huang, J. Li, and X. Hu, “Infrared invisible clothing: Hiding from infrared detectors at multiple angles in real world,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2022, pp. 13 317–13 326
2022
Later among the works it cites.
D. Wang, T. Jiang, J. Sun, W. Zhou, Z. Gong, X. Zhang, W. Yao, and X. Chen, “Fca: Learning a 3d full-coverage vehicle camouflage for multi-view physical adversarial attack,” in Proceedings of the AAAI Conference on Artificial Intelligence , vol. 36, 2022, pp. 2414–2422
2022
Later among the works it cites.
J. Bai, K. Gao, D. Gong, S.-T. Xia, Z. Li, and W. Liu, “Hardly perceptible trojan attack against neural networks with bit flips,” in Computer Vision–ECCV 2022: 17th European Conference, Tel Aviv, Israel, October 23–27, 2022, Proceedings, Part V . Springer, 2022, pp. 104–121
2022
Later among the works it cites.
2022
Later among the works it cites.
Z. Cai, C. Song, S. Krishnamurthy, A. Roy-Chowdhury, and S. Asif, “Blackbox attacks via surrogate ensemble search,” Advances in Neural Information Processing Systems , vol. 35, pp. 5348–5362, 2022
2022
Later among the works it cites.
Y. Liu, Y. Cheng, L. Gao, X. Liu, Q. Zhang, and J. Song, “Practical evaluation of adversarial robustness via adaptive auto attack,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2022, pp. 15 105–15 114
2022
Later among the works it cites.
B. Zhao and Y. Lao, “Clpa: Clean-label poisoning availability attacks using generative adversarial nets,” in Proceedings of the AAAI Conference on Artificial Intelligence , vol. 36, no. 8, 2022, pp. 9162–9170
2022
Later among the works it cites.
Y. Guo, Q. Li, W. Zuo, and H. Chen, “An intermediate-level attack framework on the basis of linear regression,” IEEE Transactions on Pattern Analysis and Machine Intelligence , 2022
2022
Later among the works it cites.
G. Tao, G. Shen, Y. Liu, S. An, Q. Xu, S. Ma, P. Li, and X. Zhang, “Better trigger inversion optimization in backdoor scanning,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2022, pp. 13 368–13 378
2022
Later among the works it cites.
M. Noppel, L. Peter, and C. Wressnegger, “Disguising attacks with explanation-aware backdoors,” in 2023 IEEE Symposium on Security and Privacy (SP) . IEEE Computer Society, 2022, pp. 996–1013
2022
Later among the works it cites.
G. Wang, H. Yan, and X. Wei, “Enhancing transferability of adversarial examples with spatial momentum,” in Pattern Recognition and Computer Vision: 5th Chinese Conference, PRCV 2022, Shenzhen, China, November 4–7, 2022, Proceedings, Part I . Springer, 2022, pp. 593–604
2022
Later among the works it cites.
J. Zhang, W. Wu, J.-t. Huang, Y. Huang, W. Wang, Y. Su, and M. R. Lyu, “Improving adversarial transferability via neuron attribution-based attacks,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2022, pp. 14 993–15 002
2022
Later among the works it cites.
Y. Xiong, J. Lin, M. Zhang, J. E. Hopcroft, and K. He, “Stochastic variance reduced ensemble adversarial attack for boosting the adversarial transferability,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2022, pp. 14 983–14 992
2022
Later among the works it cites.
2022
Later among the works it cites.
T. V. Sang, T. P. Thao, R. Shigetomi Yamaguchi, and T. Nakata, “Enhancing boundary attack in adversarial image using square random constraint,” in Proceedings of the 2022 ACM on International Workshop on Security and Privacy Analytics , 2022, pp. 13–23
2022
Later among the works it cites.
Y. Deng and L. J. Karam, “Frequency-tuned universal adversarial attacks on texture recognition,” IEEE Transactions on Image Processing , vol. 31, pp. 5856–5868, 2022
2022
Later among the works it cites.
B. G. Doan, M. Xue, S. Ma, E. Abbasnejad, and D. C. Ranasinghe, “Tnt attacks! universal naturalistic adversarial patches against deep neural network systems,” IEEE Transactions on Information Forensics and Security , vol. 17, pp. 3816–3830, 2022
2022
Later among the works it cites.
2022
Later among the works it cites.
Y. Mathov, L. Rokach, and Y. Elovici, “Enhancing real-world adversarial patches through 3d modeling of complex target scenes,” Neurocomputing , vol. 499, pp. 11–22, 2022
2022
Later among the works it cites.
J. Byun, S. Cho, M.-J. Kwon, H.-S. Kim, and C. Kim, “Improving the transferability of targeted adversarial examples through object-based diverse input,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2022, pp. 15 244–15 253
2022
Later among the works it cites.
Z. Cai, S. Rane, A. E. Brito, C. Song, S. V. Krishnamurthy, A. K. Roy-Chowdhury, and M. S. Asif, “Zero-query transfer attacks on context-aware object detectors,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2022, pp. 15 024–15 034
2022
Later among the works it cites.
Z. Hu, S. Huang, X. Zhu, F. Sun, B. Zhang, and X. Hu, “Adversarial texture for fooling person detectors in the physical world,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2022, pp. 13 307–13 316
2022
Later among the works it cites.
N. Suryanto, Y. Kim, H. Kang, H. T. Larasati, Y. Yun, T.-T.-H. Le, H. Yang, S.-Y. Oh, and H. Kim, “Dta: Physical camouflage attacks using differentiable transformation network,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2022, pp. 15 305–15 314
2022
Later among the works it cites.
2022
Later among the works it cites.
Y. Xu and P. Ghamisi, “Universal adversarial examples in remote sensing: Methodology and benchmark,” IEEE Transactions on Geoscience and Remote Sensing , vol. 60, pp. 1–15, 2022
2022
Later among the works it cites.
X. Han, G. Xu, Y. Zhou, X. Yang, J. Li, and T. Zhang, “Physical backdoor attacks to lane detection systems in autonomous driving,” in Proceedings of the 30th ACM International Conference on Multimedia , 2022, pp. 2957–2968
2022
Later among the works it cites.
2022
Later among the works it cites.
Y. Zhong, X. Liu, D. Zhai, J. Jiang, and X. Ji, “Shadows can be dangerous: Stealthy and effective physical-world adversarial attack by natural phenomenon,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2022, pp. 15 345–15 354
2022
Later among the works it cites.
2022
Later among the works it cites.
Y. Xu, J. Wang, Y. Li, Y. Wang, Z. Xu, and D. Wang, “Universal physical adversarial attack via background image,” in Applied Cryptography and Network Security Workshops: ACNS 2022 Satellite Workshops, AIBlock, AIHWS, AIoTS, CIMSS, Cloud S&P, SCI, SecMT, SiMLA, Rome, Italy, June 20–23, 2022, Proceedings . Springer, 2022, pp. 3–14
2022
Later among the works it cites.
2022
Later among the works it cites.
X. Yang, Y. Dong, T. Pang, Z. Xiao, H. Su, and J. Zhu, “Controllable evaluation and generation of physical adversarial patch on face recognition,” arXiv e-prints , pp. arXiv–2203, 2022
2022
Later among the works it cites.
C.-S. Lin, C.-Y. Hsu, P.-Y. Chen, and C.-M. Yu, “Real-world adversarial examples via makeup,” in ICASSP 2022-2022 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP) . IEEE, 2022, pp. 2854–2858
2022
Later among the works it cites.
I. Singh, T. Araki, and K. Kakizaki, “Powerful physical adversarial examples against practical face recognition systems,” in Proceedings of the IEEE/CVF Winter Conference on Applications of Computer Vision , 2022, pp. 301–310
2022
Later among the works it cites.
S. Fu, F. He, Y. Liu, L. Shen, and D. Tao, “Robust unlearnable examples: Protecting data privacy against adversarial learning,” in International Conference on Learning Representations , 2022
2022
Later among the works it cites.
G. Lovisotto, N. Finnie, M. Munoz, C. K. Mummadi, and J. H. Metzen, “Give me your attention: Dot-product attention considered harmful for adversarial patch robustness,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2022, pp. 15 234–15 243
2022
Later among the works it cites.
S. Vellaichamy, M. Hull, Z. J. Wang, N. Das, S. Peng, H. Park, and D. H. P. Chau, “Detectordetective: Investigating the effects of adversarial examples on object detectors,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2022, pp. 21 484–21 491
2022
Later among the works it cites.
P. A. Sava, J.-P. Schulze, P. Sperl, and K. Böttinger, “Assessing the impact of transformations on physical adversarial attacks,” in Proceedings of the 15th ACM Workshop on Artificial Intelligence and Security , 2022, pp. 79–90
2022
Later among the works it cites.
J. Gu, H. Zhao, V. Tresp, and P. H. Torr, “Segpgd: An effective and efficient adversarial attack for evaluating and boosting segmentation robustness,” in Computer Vision–ECCV 2022: 17th European Conference, Tel Aviv, Israel, October 23–27, 2022, Proceedings, Part XXIX . Springer, 2022, pp. 308–325
2022
Later among the works it cites.
Q. Xu, Z. Yang, Y. Zhao, X. Cao, and Q. Huang, “Rethinking label flipping attack: From sample masking to sample thresholding,” IEEE Transactions on Pattern Analysis and Machine Intelligence , 2022
2022
Later among the works it cites.
C. Fu, S. Li, X. Yuan, J. Ye, Z. Cao, and F. Ding, “Ad 2 attack: Adaptive adversarial attack on real-time uav tracking,” in 2022 International Conference on Robotics and Automation (ICRA) . IEEE, 2022, pp. 5893–5899
2022
Later among the works it cites.
Z. Jin, J. Xiaoyu, Y. Cheng, B. Yang, C. Yan, and W. Xu, “Pla-lidar: Physical laser attacks against lidar-based 3d object detection in autonomous vehicle,” in 2023 IEEE Symposium on Security and Privacy (SP) . IEEE Computer Society, 2022, pp. 710–727
2022
Later among the works it cites.
B. Peng, B. Peng, S. Yong, and L. Liu, “An empirical study of fully black-box and universal adversarial attack for sar target recognition,” Remote Sensing , vol. 14, no. 16, p. 4017, 2022
2022
Later among the works it cites.
T. Bai, H. Wang, and B. Wen, “Targeted universal adversarial examples for remote sensing,” Remote Sensing , vol. 14, no. 22, p. 5833, 2022
2022
Later among the works it cites.
2022
Later among the works it cites.
B. Peng, B. Peng, J. Zhou, J. Xia, and L. Liu, “Speckle-variant attack: Toward transferable adversarial attack to sar target recognition,” IEEE Geoscience and Remote Sensing Letters , vol. 19, pp. 1–5, 2022
2022
Later among the works it cites.
Q. Wang, G. Feng, Z. Yin, and B. Luo, “Universal adversarial perturbation for remote sensing images,” in 2022 IEEE 24th International Workshop on Multimedia Signal Processing (MMSP) . IEEE, 2022, pp. 1–6
2022
Later among the works it cites.
W.-B. Qin and F. Wang, “A universal adversarial attack on cnn-sar image classification by feature dictionary modeling,” in IGARSS 2022-2022 IEEE International Geoscience and Remote Sensing Symposium . IEEE, 2022, pp. 1027–1030
2022
Later among the works it cites.
2022
Later among the works it cites.
Y. Zhang, Y. Zhang, J. Qi, K. Bin, H. Wen, X. Tong, and P. Zhong, “Adversarial patch attack on multi-scale object detection for uav remote sensing images,” Remote Sensing , vol. 14, no. 21, p. 5298, 2022
2022
Later among the works it cites.
S. Mei, R. Jiang, M. Ma, and C. Song, “Rotation-invariant feature learning via convolutional neural network with cyclic polar coordinates convolutional layer,” IEEE Transactions on Geoscience and Remote Sensing , vol. 61, pp. 1–13, 2023
2023
Closest in time.
C. Zhang, K.-M. Lam, and Q. Wang, “Cof-net: A progressive coarse-to-fine framework for object detection in remote-sensing imagery,” IEEE Transactions on Geoscience and Remote Sensing , vol. 61, pp. 1–17, 2023
2023
Closest in time.
G. Li, Z. Liu, X. Zhang, and W. Lin, “Lightweight salient object detection in optical remote sensing images via semantic matching and edge alignment,” IEEE Transactions on Geoscience and Remote Sensing , 2023
2023
Closest in time.
2023
Closest in time.
2023
Closest in time.
2023
Closest in time.
M. Pintor, D. Angioni, A. Sotgiu, L. Demetrio, A. Demontis, B. Biggio, and F. Roli, “Imagenet-patch: A dataset for benchmarking machine learning robustness against adversarial patches,” Pattern Recognition , vol. 134, p. 109064, 2023
2023
Closest in time.
J.-X. Mi, X.-D. Wang, L.-F. Zhou, and K. Cheng, “Adversarial examples based on object detection tasks: A survey,” Neurocomputing , vol. 519, pp. 114–126, 2023
2023
Closest in time.
S. M. K. A. Kazmi, N. Aafaq, M. A. Khan, A. Saleem, and Z. Ali, “Adversarial attacks on aerial imagery: The state-of-the-art and perspective,” in 2023 3rd International Conference on Artificial Intelligence (ICAI) . IEEE, 2023, pp. 95–102
2023
Closest in time.
B. Li, P. Qi, B. Liu, S. Di, J. Liu, J. Pei, J. Yi, and B. Zhou, “Trustworthy ai: From principles to practices,” ACM Computing Surveys , vol. 55, no. 9, pp. 1–46, 2023
2023
Closest in time.
J. Guo, W. Bao, J. Wang, Y. Ma, X. Gao, G. Xiao, A. Liu, J. Dong, X. Liu, and W. Wu, “A comprehensive evaluation framework for deep model robustness,” Pattern Recognition , vol. 137, p. 109308, 2023
2023
Closest in time.
Y. Dong, C. Kang, J. Zhang, Z. Zhu, Y. Wang, X. Yang, H. Su, X. Wei, and J. Zhu, “Benchmarking robustness of 3d object detection to common corruptions,” in Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2023, pp. 1022–1032
2023
Closest in time.
T. Zhou, J. Chen, Y. Shi, K. Jiang, M. Yang, and D. Yang, “Bridging the view disparity between radar and camera features for multi-modal fusion 3d object detection,” IEEE Transactions on Intelligent Vehicles , vol. 8, no. 2, pp. 1523–1535, 2023
2023
Closest in time.
D. Liu, W. Dai, H. Zhang, X. Jin, J. Cao, and W. Kong, “Brain-machine coupled learning method for facial emotion recognition,” IEEE Transactions on Pattern Analysis and Machine Intelligence , 2023
2023
Closest in time.
S. Mei, G. Zhang, N. Wang, B. Wu, M. Ma, Y. Zhang, and Y. Feng, “Lightweight multi-resolution feature fusion network for spectral super-resolution,” IEEE Transactions on Geoscience and Remote Sensing , 2023
2023
Closest in time.
J. Lian, X. Wang, Y. Su, M. Ma, and S. Mei, “Cba: Contextual background attack against optical aerial detection in the physical world,” IEEE Transactions on Geoscience and Remote Sensing , vol. 61, pp. 1–16, 2023
2023
Closest in time.
X. Wei, S. Wang, and H. Yan, “Efficient robustness assessment via adversarial spatial-temporal focus on videos,” IEEE Transactions on Pattern Analysis and Machine Intelligence , 2023
2023
Closest in time.
L. Huang, C. Gao, and N. Liu, “Erosion attack: Harnessing corruption to improve adversarial examples,” IEEE Transactions on Image Processing , 2023
2023
Closest in time.
2023
Closest in time.
H. Wen, S. Chang, and L. Zhou, “Light projection-based physical-world vanishing attack against car detection,” in ICASSP 2023-2023 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP) . IEEE, 2023, pp. 1–5
2023
Closest in time.
2023
Closest in time.
F. Yin, Y. Zhang, B. Wu, Y. Feng, J. Zhang, Y. Fan, and Y. Yang, “Generalizable black-box adversarial attack with meta learning,” IEEE Transactions on Pattern Analysis and Machine Intelligence , 2023
2023
Closest in time.
C. Wan, F. Huang, and X. Zhao, “Average gradient-based adversarial attack,” IEEE Transactions on Multimedia , 2023
2023
Closest in time.
Y. Zhang, Y.-a. Tan, H. Sun, Y. Zhao, Q. Zhang, and Y. Li, “Improving the invisibility of adversarial examples with perceptually adaptive perturbation,” Information Sciences , 2023
2023
Closest in time.
J. Wang, C. Cui, X. Wen, and J. Shi, “Transpatch: A transformer-based generator for accelerating transferable patch generation in adversarial attacks against object detection models,” in Computer Vision–ECCV 2022 Workshops: Tel Aviv, Israel, October 23–27, 2022, Proceedings, Part I . Springer, 2023, pp. 317–331
2023
Closest in time.
S.-H. Chan, Y. Dong, J. Zhu, X. Zhang, and J. Zhou, “Baddet: Backdoor attacks on object detection,” in Computer Vision–ECCV 2022 Workshops: Tel Aviv, Israel, October 23–27, 2022, Proceedings, Part I . Springer, 2023, pp. 396–412
2023
Closest in time.
Y. Zhang, Z. Gong, Y. Zhang, K. Bin, Y. Li, J. Qi, H. Wen, and P. Zhong, “Boosting transferability of physical attack against detectors by redistributing separable attention,” Pattern Recognition , vol. 138, p. 109435, 2023
2023
Closest in time.
X. Zheng, Y. Fan, B. Wu, Y. Zhang, J. Wang, and S. Pan, “Robust physical-world attacks on face recognition,” Pattern Recognition , vol. 133, p. 109009, 2023
2023
Closest in time.
2023
Closest in time.
Z. Zheng, L. Zheng, Y. Yang, and F. Wu, “U-turn: Crafting adversarial queries with opposite-direction features,” International Journal of Computer Vision , vol. 131, no. 4, pp. 835–854, 2023
2023
Closest in time.
Q. Zhu, Y. Zhou, L. Fei, D. Zhang, and D. Zhang, “Multi-spectral palmprints joint attack and defense with adversarial examples learning,” IEEE Transactions on Information Forensics and Security , vol. 18, pp. 1789–1799, 2023
2023
Closest in time.
T. Wang, L. Zhu, Z. Zhang, H. Zhang, and J. Han, “Targeted adversarial attack against deep cross-modal hashing retrieval,” IEEE Transactions on Circuits and Systems for Video Technology , 2023
2023
Closest in time.
2023
Closest in time.
G. Tang, T. Jiang, W. Zhou, C. Li, W. Yao, and Y. Zhao, “Adversarial patch attacks against aerial imagery object detectors,” Neurocomputing , 2023
2023
Closest in time.
J. Rasol, Y. Xu, Z. Zhang, F. Zhang, W. Feng, L. Dong, T. Hui, and C. Tao, “An adaptive adversarial patch-generating algorithm for defending against the intelligent low, slow, and small target,” Remote Sensing , vol. 15, no. 5, p. 1439, 2023
2023
Closest in time.
X. Wei and M. Yuan, “Adversarial pan-sharpening attacks for object detection in remote sensing,” Pattern Recognition , vol. 139, p. 109466, 2023
2023
Closest in time.
X. Sun, G. Cheng, L. Pei, H. Li, and J. Han, “Threatening patch attacks on object detection in optical remote sensing images,” IEEE Transactions on Geoscience and Remote Sensing , vol. 61, pp. 1–10, 2023
2023
Closest in time.
B. Deng, D. Zhang, F. Dong, J. Zhang, M. Shafiq, and Z. Gu, “Rust-style patch: A physical and naturalistic camouflage attacks on object detector for remote sensing images,” Remote Sensing , vol. 15, no. 4, p. 885, 2023
2023
Closest in time.
Z. Chen, W. Xue, W. Tian, A. Li, and H. Zhang, “Attacking satellite remote sensing detection using saliency constrained adversarial patch,” in Advances in Guidance, Navigation and Control: Proceedings of 2022 International Conference on Guidance, Navigation and Control . Springer, 2023, pp. 3991–4002
2023
Closest in time.