Imperceptible CMOS camera dazzle for adversarial attacks on deep neural networks

Zvi Stein,Adrian Stern
DOI: https://doi.org/10.48550/arXiv.2311.16118
2023-10-22
Cryptography and Security
Abstract:Despite the outstanding performance of deep neural networks, they are vulnerable to adversarial attacks. While there are many invisible attacks in the digital domain, most physical world adversarial attacks are visible. Here we present an invisible optical adversarial attack that uses a light source to dazzle a CMOS camera with a rolling shutter. We present the photopic conditions required to keep the attacking light source completely invisible while sufficiently jamming the captured image so that a deep neural network applied to it is deceived.
What problem does this paper attempt to address?