search
HomeTechnology peripheralsAIBeihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.

In recent years, the exploration of safety assessment of visual perception systems has gradually deepened. Researchers have successfully implemented visible light modal safety assessment technology based on different carriers such as glasses, stickers, clothes, etc., and there are also some new attempts targeting infrared modalities. . But they can only work in a single mode.


With the development of artificial intelligence technology, visible light-thermal infrared imaging technology has been used in many safety-critical tasks such as security monitoring and autonomous driving. Among them, visible light imaging can It provides rich texture information during the day, and infrared imaging can clearly display the thermal radiation distribution of the target at night. The combination of the two brings many advantages to the visual perception system, such as 24-hour full coverage and freedom from environmental limitations. Therefore, a unified security assessment method for multi-modal visual perception systems is also urgently needed to be studied.

Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.

However, achieving multimodal assessment is extremely challenging. First of all, it is difficult to universally apply attack methods under different imaging mechanisms. Previous methods were proposed based on the imaging characteristics of specific target modalities, and are difficult to work in other modalities. Furthermore, it is difficult to balance stealth performance, production cost and flexible application. It is not easy to be dual effective in visible light and the more difficult infrared mode, and it is even more difficult to achieve low-cost and convenient production and use.

Faced with many challenges, researchers from the Beihang Institute of Artificial Intelligence explored the common shape attributes between visible light and infrared modes, and innovatively proposed "cross- Modal universal countermeasure patch" to achieve visible-infrared synchronized stealth. It selects materials that are easy to obtain, low cost, and have excellent thermal insulation properties to make convenient patches, which are ready to use. While filling the gaps in the robustness evaluation technology of visible light-infrared multi-modal detection systems in the current physical world, it also takes into account The ease and immediacy of physical implementation. Experiments demonstrate the effectiveness of this method under different detection models and modalities, as well as its generalization in multiple scenarios. Currently, this paper has been accepted by ICCV 2023.
Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.

Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.


Paper link: https://arxiv.org/abs/2307.07859
Code link: https://github.com/Aries-iai/Cross-modal_Patch_Attack

Technical points

This research uses evolutionary algorithm as The basic framework is based on the three perspectives of shape modeling, shape optimization, and modal balance for program design and effect improvement. The specific process is as shown in the figure:
Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.

##1. Multi-anchor shape modeling based on spline interpolation

Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.
For the basics For the shape modeling part, the researchers designed a new paradigm of point optimization modeling, which can directly adjust the patch shape by changing the point coordinates. In this process, the movement of the anchor point will not be restricted by direction, distance, etc., effectively increasing the search for patch shapes. space. On this basis, in order to ensure the naturalness of the shape, it also uses the spline interpolation method to achieve smooth connections, and the splines will follow the control points more closely.

2. Boundary-limited shape optimization algorithm based on differential evolution

Effective optimization means are required to implement the attack. This researcher considered the time cost, actual effect, etc., used the evolutionary algorithm as the basic framework, and improved it from the two perspectives of boundary setting and fitness function:

( 1) Boundary setting: Boundary setting for anchor points improves the effectiveness of deformation and reduces time costs. It has the following settings: no loops or self-intersections will be formed in the curve segment; cusps will not easily appear in the curve segment; and they will not appear in the invalid area.

Take the anchor point
as an example. The blue part in the figure below is the boundary setting legend, and the orange part is the error instance: Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.

Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.
About the boundary determination of the anchor point
Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes. The mathematical expression is as follows: Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.

Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.
(2) Fitness function: Unlike previous work that only targets a single mode for attack evaluation, this work focuses on the two modes of visible light and infrared, and there is a natural problem of balancing the differences in modal effects. . Therefore, in order to avoid going to the extreme of easily optimizing a single mode, the researchers innovatively proposed a cross-modal fitness function based on detector confidence score perception, encouraging the exploration of successful directions while balancing the difference in the effects of the two modes, and finally the survival of the fittest based on scores. Taking into account the difference in attack difficulty between the initial stage and the later stage, it uses an exponential function instead of a linear function to highlight the difference in attack progress in different stages.
Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.##                                                                                                                                                                   ’ ’ s to ’ s ’ ’ s ’ s ’ s ’ s ‐ ‐ ‐ ‐ ‐ ​ ​ ​ ​ ​ ​ ​ ​ ​ ​ ​ ​ ​ ​ ​ ​ ​
The algorithm iterates the exploration process until both modes successfully attack, and outputs the optimal shape strategy.The complete optimization process is as follows:

Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.

##Experimental results

Experiment 1: Cross-modal attack performance verification for different series of detectors

Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.

Experiment 2: Shape ablation experiment

Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.

##Experiment 3: Ablation experiment for cross-modal fitness function

Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.

Experiment 4: Method robustness verification under physical implementation deviation

Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.

Experiment 5: Validation of method effectiveness under different physical conditions

Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.

Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.##Performance verification visualization results under different angles, distances, postures, and scenarios

##Summary
##The work of this paper is based on natural shape optimization. Combining deformation patches with cross-modal attacks, a visible-infrared multi-modal robustness evaluation method in physical environments is designed. This method can evaluate the robustness of a multi-modal (visible light-infrared) target detection system, effectively correct the detector model based on the evaluation results, and simultaneously improve the accuracy of target image detection in both visible light and infrared modes. In physics It can be truly implemented and applied in the environment, and contribute to the robustness evaluation and improvement of multi-modal detection systems.

The above is the detailed content of Beihang University breaks down modal barriers and introduces a universal physical counterattack method across visible and infrared modes.. For more information, please follow other related articles on the PHP Chinese website!

Statement
This article is reproduced at:机器之心. If there is any infringement, please contact admin@php.cn delete
A Comprehensive Guide to ExtrapolationA Comprehensive Guide to ExtrapolationApr 15, 2025 am 11:38 AM

Introduction Suppose there is a farmer who daily observes the progress of crops in several weeks. He looks at the growth rates and begins to ponder about how much more taller his plants could grow in another few weeks. From th

The Rise Of Soft AI And What It Means For Businesses TodayThe Rise Of Soft AI And What It Means For Businesses TodayApr 15, 2025 am 11:36 AM

Soft AI — defined as AI systems designed to perform specific, narrow tasks using approximate reasoning, pattern recognition, and flexible decision-making — seeks to mimic human-like thinking by embracing ambiguity. But what does this mean for busine

Evolving Security Frameworks For The AI FrontierEvolving Security Frameworks For The AI FrontierApr 15, 2025 am 11:34 AM

The answer is clear—just as cloud computing required a shift toward cloud-native security tools, AI demands a new breed of security solutions designed specifically for AI's unique needs. The Rise of Cloud Computing and Security Lessons Learned In th

3 Ways Generative AI Amplifies Entrepreneurs: Beware Of Averages!3 Ways Generative AI Amplifies Entrepreneurs: Beware Of Averages!Apr 15, 2025 am 11:33 AM

Entrepreneurs and using AI and Generative AI to make their businesses better. At the same time, it is important to remember generative AI, like all technologies, is an amplifier – making the good great and the mediocre, worse. A rigorous 2024 study o

New Short Course on Embedding Models by Andrew NgNew Short Course on Embedding Models by Andrew NgApr 15, 2025 am 11:32 AM

Unlock the Power of Embedding Models: A Deep Dive into Andrew Ng's New Course Imagine a future where machines understand and respond to your questions with perfect accuracy. This isn't science fiction; thanks to advancements in AI, it's becoming a r

Is Hallucination in Large Language Models (LLMs) Inevitable?Is Hallucination in Large Language Models (LLMs) Inevitable?Apr 15, 2025 am 11:31 AM

Large Language Models (LLMs) and the Inevitable Problem of Hallucinations You've likely used AI models like ChatGPT, Claude, and Gemini. These are all examples of Large Language Models (LLMs), powerful AI systems trained on massive text datasets to

The 60% Problem — How AI Search Is Draining Your TrafficThe 60% Problem — How AI Search Is Draining Your TrafficApr 15, 2025 am 11:28 AM

Recent research has shown that AI Overviews can cause a whopping 15-64% decline in organic traffic, based on industry and search type. This radical change is causing marketers to reconsider their whole strategy regarding digital visibility. The New

MIT Media Lab To Put Human Flourishing At The Heart Of AI R&DMIT Media Lab To Put Human Flourishing At The Heart Of AI R&DApr 15, 2025 am 11:26 AM

A recent report from Elon University’s Imagining The Digital Future Center surveyed nearly 300 global technology experts. The resulting report, ‘Being Human in 2035’, concluded that most are concerned that the deepening adoption of AI systems over t

See all articles

Hot AI Tools

Undresser.AI Undress

Undresser.AI Undress

AI-powered app for creating realistic nude photos

AI Clothes Remover

AI Clothes Remover

Online AI tool for removing clothes from photos.

Undress AI Tool

Undress AI Tool

Undress images for free

Clothoff.io

Clothoff.io

AI clothes remover

AI Hentai Generator

AI Hentai Generator

Generate AI Hentai for free.

Hot Article

R.E.P.O. Energy Crystals Explained and What They Do (Yellow Crystal)
4 weeks agoBy尊渡假赌尊渡假赌尊渡假赌
R.E.P.O. Best Graphic Settings
4 weeks agoBy尊渡假赌尊渡假赌尊渡假赌
R.E.P.O. How to Fix Audio if You Can't Hear Anyone
4 weeks agoBy尊渡假赌尊渡假赌尊渡假赌
WWE 2K25: How To Unlock Everything In MyRise
1 months agoBy尊渡假赌尊渡假赌尊渡假赌

Hot Tools

SublimeText3 Chinese version

SublimeText3 Chinese version

Chinese version, very easy to use

MantisBT

MantisBT

Mantis is an easy-to-deploy web-based defect tracking tool designed to aid in product defect tracking. It requires PHP, MySQL and a web server. Check out our demo and hosting services.

PhpStorm Mac version

PhpStorm Mac version

The latest (2018.2.1) professional PHP integrated development tool

WebStorm Mac version

WebStorm Mac version

Useful JavaScript development tools

ZendStudio 13.5.1 Mac

ZendStudio 13.5.1 Mac

Powerful PHP integrated development environment