• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Konferenzschrift
  4. Adversarial Patch Detection and Mitigation by Detecting High Entropy Regions
 
  • Details
  • Full
Options
July 2023
Conference Paper
Title

Adversarial Patch Detection and Mitigation by Detecting High Entropy Regions

Abstract
Neural networks have achieved remarkable performance in many applications, such as image classification and object detection, but security and robustness concerns have also been raised. Even the most advanced object detectors are vulnerable to localised patch attacks, where an adversary introduces a small adversarial patch into an image to either cause the detectors to miss real objects or to cause the detectors to detect objects that do not exist. Adversarial patches are able to force state-of-the-art object detectors to make false predictions with a high degree of confidence. These attacks can be carried out in the physical world, and defending against them is an open problem. In this paper, we propose a novel detection approach for real-world adversarial patches based on edge detection. The approach takes advantage of the fact that patches are high entropy regions featuring many edges and details. We evaluated our approach on a subset of the APRICOT and MS COCO datasets. In total, we achieve over 88% IoU on samples featuring adversarial patches.
Author(s)
Bunzel, Niklas  
Fraunhofer-Institut für Sichere Informationstechnologie SIT  
Siwakoti, Ashim
Fraunhofer-Institut für Sichere Informationstechnologie SIT  
Klause, Gerrit
Fraunhofer-Institut für Sichere Informationstechnologie SIT  
Mainwork
53rd Annual IEEE/IFIP International Conference on Dependable Systems and Networks Workshops, DSN-W 2023. Proceedings  
Conference
International Conference on Dependable Systems and Networks Workshops 2023  
Workshop on Dependable and Secure Machine Learning 2023  
DOI
10.1109/DSN-W58399.2023.00040
Language
English
Fraunhofer-Institut für Sichere Informationstechnologie SIT  
  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024