Sample selection of adversarial attacks against traffic signs

被引:0
作者
Wang, Yiwen [1 ]
Wang, Yue [1 ]
Feng, Guorui [1 ]
机构
[1] Shanghai Univ, Sch Commun & Informat Engn, Shanghai 200444, Peoples R China
基金
中国国家自然科学基金;
关键词
Incremental attacks; Traffic signs; Sample selection; Autonomous driving safety; Probability estimation;
D O I
10.1016/j.neunet.2024.106698
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
In the real world, the correct recognition of traffic signs plays a crucial role in vehicle autonomous driving and traffic monitoring. The research on its adversarial attack can test the security of vehicle autonomous driving system and provide enlightenment for improving the recognition algorithm. However, with the development of transportation infrastructure, new traffic signs may be introduced. The adversarial attack model for traffic signs needs to adapt to the addition of new types. Based on this, class incremental learning for traffic sign adversarial attacks has become an interesting research field. We propose a class incremental learning method for adversarial attacks on traffic signs. First, this method uses Pinpoint Region Probability Estimation Network (PRPEN) to predict the probability of each pixel being attacked in old samples. It helps to identify the high attack probability regions of the samples. Subsequently, based on the size of high probability pixel concentration area, the replay sample set is constructed. Old samples with smaller concentration areas receive higher priority and are prioritized for incremental learning. The experimental results show that compared with other sample selection methods, our method selects more representative samples and can train PRPEN more effectively to generate probability maps, thereby better generating adversarial attacks on traffic signs.
引用
收藏
页数:14
相关论文
共 35 条
[21]   Class-Incremental Learning: Survey and Performance Evaluation on Image Classification [J].
Masana, Marc ;
Liu, Xialei ;
Twardowski, Bartlomiej ;
Menta, Mikel ;
Bagdanov, Andrew D. ;
van de Weijer, Joost .
IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2023, 45 (05) :5513-5533
[22]  
Nokhwal S., 2023, 2023 2 INT C INF, P1, DOI [10.1109/ICI60088.2023.10421659, DOI 10.1109/ICI60088.2023.10421659]
[23]  
Papernot N, 2016, Arxiv, DOI arXiv:1605.07277
[24]  
Pavlitska S., 2023, 2023 3 INT C EL COMP, P1
[25]   iCaRL: Incremental Classifier and Representation Learning [J].
Rebuffi, Sylvestre-Alvise ;
Kolesnikov, Alexander ;
Sperl, Georg ;
Lampert, Christoph H. .
30TH IEEE CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2017), 2017, :5533-5542
[26]  
Rolnick David, 2017, Experience Replay for Continual Learning
[27]   Incremental Feature Learning for Fraud Data Stream [J].
Sadreddin, Armin ;
Sadaoui, Samira .
ICAART: PROCEEDINGS OF THE 14TH INTERNATIONAL CONFERENCE ON AGENTS AND ARTIFICIAL INTELLIGENCE - VOL 3, 2022, :268-275
[28]  
Shin H, 2017, ADV NEUR IN, V30
[29]   A survey on few-shot class-incremental learning [J].
Tian, Songsong ;
Li, Lusi ;
Li, Weijun ;
Ran, Hang ;
Ning, Xin ;
Tiwari, Prayag .
NEURAL NETWORKS, 2024, 169 :307-324
[30]   A Comprehensive Survey of Continual Learning: Theory, Method and Application [J].
Wang, Liyuan ;
Zhang, Xingxing ;
Su, Hang ;
Zhu, Jun .
IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2024, 46 (08) :5362-5383