Next Article in Journal
Wireless Device with Energy Management for Closed-Loop Deep Brain Stimulation (CLDBS)
Previous Article in Journal
Application of Auto-Regulative Sparse Variational Mode Decomposition in Mechanical Fault Diagnosis
 
 
Font Type:
Arial Georgia Verdana
Font Size:
Aa Aa Aa
Line Spacing:
Column Width:
Background:
Article

D-UAP: Initially Diversified Universal Adversarial Patch Generation Method

1
Three Academy, PLA Information Engineering University, Zhengzhou 450000, China
2
Software Institute, Zhengzhou University, Zhengzhou 450000, China
*
Author to whom correspondence should be addressed.
Electronics 2023, 12(14), 3080; https://doi.org/10.3390/electronics12143080
Submission received: 26 May 2023 / Revised: 30 June 2023 / Accepted: 30 June 2023 / Published: 14 July 2023
(This article belongs to the Topic Computer Vision and Image Processing)

Abstract

With the rapid development of adversarial example technologies, the concept of adversarial patches has been proposed, which can successfully transfer adversarial attacks to the real world and fool intelligent object detection systems. However, the real-world environment is complex and changeable, and the adversarial patch attack technology is susceptible to real-world factors, resulting in a decrease in the success rate of attack. Existing adversarial-patch-generation algorithms have a single direction of patch initialization and do not fully consider the impact of initial diversification on its upper limit of adversarial patch attack. Therefore, this paper proposes an initial diversified adversarial patch generation technology to improve the effect of adversarial patch attacks on the underlying algorithms in the real world. The method uses YOLOv4 as the attack model, and the experimental results show that the attack effect of the adversarial-patch-attack method proposed in this paper is higher than the baseline 8.46%, and it also has a stronger attack effect and fewer training rounds.
Keywords: object detection; YOLOv4; adversarial attack; adversarial patch; output diversification initialization object detection; YOLOv4; adversarial attack; adversarial patch; output diversification initialization

Share and Cite

MDPI and ACS Style

Sun, L.; Wang, X.; Yang, Y.; Mao, X. D-UAP: Initially Diversified Universal Adversarial Patch Generation Method. Electronics 2023, 12, 3080. https://doi.org/10.3390/electronics12143080

AMA Style

Sun L, Wang X, Yang Y, Mao X. D-UAP: Initially Diversified Universal Adversarial Patch Generation Method. Electronics. 2023; 12(14):3080. https://doi.org/10.3390/electronics12143080

Chicago/Turabian Style

Sun, Lei, Xiaoqin Wang, Youhuan Yang, and Xiuqing Mao. 2023. "D-UAP: Initially Diversified Universal Adversarial Patch Generation Method" Electronics 12, no. 14: 3080. https://doi.org/10.3390/electronics12143080

APA Style

Sun, L., Wang, X., Yang, Y., & Mao, X. (2023). D-UAP: Initially Diversified Universal Adversarial Patch Generation Method. Electronics, 12(14), 3080. https://doi.org/10.3390/electronics12143080

Note that from the first issue of 2016, this journal uses article numbers instead of page numbers. See further details here.

Article Metrics

Back to TopTop