Sample selection of adversarial attacks against traffic signs

被引:0
作者
Wang, Yiwen [1 ]
Wang, Yue [1 ]
Feng, Guorui [1 ]
机构
[1] Shanghai Univ, Sch Commun & Informat Engn, Shanghai 200444, Peoples R China
基金
中国国家自然科学基金;
关键词
Incremental attacks; Traffic signs; Sample selection; Autonomous driving safety; Probability estimation;
D O I
10.1016/j.neunet.2024.106698
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
In the real world, the correct recognition of traffic signs plays a crucial role in vehicle autonomous driving and traffic monitoring. The research on its adversarial attack can test the security of vehicle autonomous driving system and provide enlightenment for improving the recognition algorithm. However, with the development of transportation infrastructure, new traffic signs may be introduced. The adversarial attack model for traffic signs needs to adapt to the addition of new types. Based on this, class incremental learning for traffic sign adversarial attacks has become an interesting research field. We propose a class incremental learning method for adversarial attacks on traffic signs. First, this method uses Pinpoint Region Probability Estimation Network (PRPEN) to predict the probability of each pixel being attacked in old samples. It helps to identify the high attack probability regions of the samples. Subsequently, based on the size of high probability pixel concentration area, the replay sample set is constructed. Old samples with smaller concentration areas receive higher priority and are prioritized for incremental learning. The experimental results show that compared with other sample selection methods, our method selects more representative samples and can train PRPEN more effectively to generate probability maps, thereby better generating adversarial attacks on traffic signs.
引用
收藏
页数:14
相关论文
共 35 条
[31]   Traffic sign attack via pinpoint region probability estimation network [J].
Wang, Yue ;
Liu, Minjie ;
Ren, Yanli ;
Zhang, Xinpeng ;
Feng, Guorui .
PATTERN RECOGNITION, 2024, 146
[32]   Graph Neural Networks in Recommender Systems: A Survey [J].
Wu, Shiwen ;
Sun, Fei ;
Zhang, Wentao ;
Xie, Xu ;
Cui, Bin .
ACM COMPUTING SURVEYS, 2023, 55 (05)
[33]   Large Scale Incremental Learning [J].
Wu, Yue ;
Chen, Yinpeng ;
Wang, Lijuan ;
Ye, Yuancheng ;
Liu, Zicheng ;
Guo, Yandong ;
Fu, Yun .
2019 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2019), 2019, :374-382
[34]   Semantic Drift Compensation for Class-Incremental Learning [J].
Yu, Lu ;
Twardowski, Bartlomiej ;
Liu, Xialei ;
Herranz, Luis ;
Wang, Kai ;
Cheng, Yongmei ;
Jui, Shangling ;
van de Weijer, Joost .
2020 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2020, :6980-6989
[35]  
Zhang Y., 2020, Two sides of the same coin: White-box and black-box attacks for transfer learning