Skip to content
Open access

Gradient-guided hierarchical feature attack for object detector

Jan 2024 · Journal of King Saud University: Computer and Information Sciences · Vol 36, pp. 101901 · 3 citations · 45 references
Computer Science

TL;DR

Gradient-guided Hierarchical Feature Attack (GHFA) is proposed to solve problems, which disrupts detector-extracted features using gradient-guided feature weighting and incorporates receptive field scaling and gradient scaling to balance the focus among feature maps and enhance attack performance.

Abstract

Deep neural networks (DNNs) are vulnerable to adversarial attacks, which can cause security risks in computer information systems. Feature disruption attacks, as a typical form of adversarial attack, optimize adversarial examples by disrupting the intermediate features extracted by DNN. The existing feature disruption attacks have limitations when it comes to objects of different scales within resolution features, favoring low-resolution feature maps and low-scoring objects. The imbalance above affects their effectiveness in object detection tasks. Gradient-guided Hierarchical Feature Attack (GHFA) is proposed to solve these problems, which disrupts detector-extracted features using gradient-guided feature weighting. GHFA incorporates receptive field scaling and gradient scaling to balance the focus among feature maps and enhance attack performance. The evaluation of GHFA on 9 object detectors demonstrates its superior transferability compared with the 6 comparative methods, surpassing the second-ranked method by 2.4%. Furthermore, the real-world applicability of GHFA is validated available by testing it on a commercial online object detection platform.

Read PDF

Similar papers

Review Aug 2026

A Comprehensive Review on Adversarial Attacks and Detection Techniques in Deep Learning Models for Image Analysis

The research methodology involved a systematic literature review using the Scopus database, adhering to Preferred Reporting Items for Systematic Reviews and Meta-Analyses guidelines, and focusing on recent advancements in attack and defence techniques.

Reeti Jaswal, Vikas Khullar, Surya Narayan Panda · 0 citations
Preprint Aug 2026

Multi-Task Consistency-based Detection of Adversarial Attacks

This work proposes an efficient and effective adversarial attack detection scheme leveraging the multi-task perception within a complex vision system, and develops a consistency score metric to measure the inconsistency between vision tasks.

Cong Chen, J. Monteuuis, Jonathan Petit · 0 citations
Sep 2026

Seeing Through Threats: Adversarial Detection Through Explainability (ADEx)

Deep Neural Networks (DNNs) remain vulnerable to adversarial perturbations, raising significant concerns in image processing applications, particularly in high-stakes domains such as medical imaging and security-critical systems. Most existing defense strategies are limited by domain specificity, architectural dependen...

Syamantak Sarkar, Nirmal Joseph, Sudhish N. George et al. · 0 citations
Open access Aug 2026

Enhanced Robustness in Neural Network Models against Adversarial Attacks and their Performance Analysis

Among the evaluated models, CNNs exhibit the highest baseline robustness, whereas DNNs and RNNs rely more heavily on defense mechanisms to maintain performance, whereas DNNs and RNNs rely more heavily on defense mechanisms to maintain performance.

Surekha M., A. K. Sagar, Vineeta Khemchandani · 0 citations
Conference Aug 2026

Ada-MGNS: Enhancing Black-Box Transfer Attacks on Vision Transformers via Adaptive Momentum and Deep Attention Guidance

Transfer-based black-box attacks are an important tool for evaluating deployed vision models, yet adversarial examples generated from Vision Transformer (ViT) surrogates often exhibit limited cross-architecture transferability. Existing momentum-based attacks are effective for convolutional neural network (CNN) surroga...

Lei Lu, Run-Han Yao, Qing-He Du et al. · 0 citations
Sep 2026

EGP-Defense: Enhancing Adversarial Robustness of LVLMs via Training-Free Edge-Guided Prompting

Large Vision-Language Models (LVLMs) have demonstrated remarkable multimodal comprehension capabilities, achieving state-of-the-art performance across various vision-language tasks. However, their performance drops significantly when facing adversarial attacks on the visual encoder. To alleviate this issue, existing ap...

Bo-Yu Wang, Zi-Wen He, Xin-Jue Hu et al. · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.