Safety-critical computer vision: an empirical survey of adversarial evasion attacks and defenses on computer vision systems

被引:0
作者
Charles Meyers
Tommy Löfstedt
Erik Elmroth
机构
[1] Umeå University,Department of Computing Science
来源
Artificial Intelligence Review | 2023年 / 56卷
关键词
Adversarial machine learning; Computer vision; Autonomous vehicles; Safety-critical;
D O I
暂无
中图分类号
学科分类号
摘要
Considering the growing prominence of production-level AI and the threat of adversarial attacks that can poison a machine learning model against a certain label, evade classification, or reveal sensitive data about the model and training data to an attacker, adversaries pose fundamental problems to machine learning systems. Furthermore, much research has focused on the inverse relationship between robustness and accuracy, raising problems for real-time and safety-critical systems particularly since they are governed by legal constraints in which software changes must be explainable and every change must be thoroughly tested. While many defenses have been proposed, they are often computationally expensive and tend to reduce model accuracy. We have therefore conducted a large survey of attacks and defenses and present a simple and practical framework for analyzing any machine-learning system from a safety-critical perspective using adversarial noise to find the upper bound of the failure rate. Using this method, we conclude that all tested configurations of the ResNet architecture fail to meet any reasonable definition of ‘safety-critical’ when tested on even small-scale benchmark data. We examine state of the art defenses and attacks against computer vision systems with a focus on safety-critical applications in autonomous driving, industrial control, and healthcare. By testing a combination of attacks and defenses, their efficacy, and their run-time requirements, we provide substantial empirical evidence that modern neural networks consistently fail to meet established safety-critical standards by a wide margin.
引用
收藏
页码:217 / 251
页数:34
相关论文
共 50 条
[31]   Computer vision for wildfire detection: a critical brief review [J].
Ramos, Leo ;
Casas, Edmundo ;
Bendek, Eduardo ;
Romero, Cristian ;
Rivas-Echeverria, Francklin .
MULTIMEDIA TOOLS AND APPLICATIONS, 2024, 83 (35) :83427-83470
[32]   Incremental learning with neural networks for computer vision: a survey [J].
Liu, Hao ;
Zhou, Yong ;
Liu, Bing ;
Zhao, Jiaqi ;
Yao, Rui ;
Shao, Zhiwen .
ARTIFICIAL INTELLIGENCE REVIEW, 2023, 56 (05) :4557-4589
[33]   Computer Vision in Automatic Visceral Leishmaniasis Diagnosis: a Survey [J].
Goncalves, Clesio de A. ;
Borges, Armando L. ;
Rodrigues, Anderson L. ;
Andrade, Nathalia B. ;
Lemos, Marcos V. de S. ;
Aguiar, Bruno G. A. ;
e Silva, Romuere R., V .
IEEE LATIN AMERICA TRANSACTIONS, 2023, 21 (02) :310-319
[34]   Human-in-the-loop for computer vision assurance: A survey [J].
Wilchek, Matthew ;
Hanley, Will ;
Lim, Jude ;
Luther, Kurt ;
Batarseh, Feras A. .
ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2023, 123
[35]   Incremental learning with neural networks for computer vision: a survey [J].
Hao Liu ;
Yong Zhou ;
Bing Liu ;
Jiaqi Zhao ;
Rui Yao ;
Zhiwen Shao .
Artificial Intelligence Review, 2023, 56 :4557-4589
[36]   A survey on unsupervised domain adaptation in computer vision tasks [J].
Sun Q. ;
Zhao C. ;
Tang Y. ;
Qian F. .
Zhongguo Kexue Jishu Kexue/Scientia Sinica Technologica, 2022, 52 (01) :26-54
[37]   Deep reinforcement learning in computer vision: a comprehensive survey [J].
Ngan Le ;
Vidhiwar Singh Rathour ;
Kashu Yamazaki ;
Khoa Luu ;
Marios Savvides .
Artificial Intelligence Review, 2022, 55 :2733-2819
[38]   A Survey of Computer Vision Based Corrosion Detection Approaches [J].
Ahuja, Sanjay Kumar ;
Shukla, Manoj Kumar .
INFORMATION AND COMMUNICATION TECHNOLOGY FOR INTELLIGENT SYSTEMS (ICTIS 2017) - VOL 2, 2018, 84 :55-63
[39]   Graph Representation Learning Meets Computer Vision: A Survey [J].
Jiao L. ;
Chen J. ;
Liu F. ;
Yang S. ;
You C. ;
Liu X. ;
Li L. ;
Hou B. .
IEEE Transactions on Artificial Intelligence, 2023, 4 (01) :2-22
[40]   Deep reinforcement learning in computer vision: a comprehensive survey [J].
Le, Ngan ;
Rathour, Vidhiwar Singh ;
Yamazaki, Kashu ;
Luu, Khoa ;
Savvides, Marios .
ARTIFICIAL INTELLIGENCE REVIEW, 2022, 55 (04) :2733-2819