An improved ShapeShifter method of generating adversarial examples for physical attacks on stop signs against Faster R-CNNs.
Shize HuangXiaowen LiuXiaolu YangZhaoxin ZhangPublished in: Comput. Secur. (2021)
Keyphrases
- preprocessing
- computational cost
- detection method
- high accuracy
- data mining
- high precision
- classification accuracy
- cost function
- significant improvement
- probabilistic model
- training set
- support vector machine
- feature set
- synthetic data
- clustering method
- optimization method
- highly efficient
- countermeasures
- classification method
- generation method
- optimization algorithm
- model selection
- medical images
- evolutionary algorithm
- decision trees
- feature selection
- learning algorithm