Publication:
AdversarialQR: An adversarial patch in QR code format

dc.contributor.authorAran Chindaudomen_US
dc.contributor.authorPrarinya Siritanawanen_US
dc.contributor.authorKarin Sumongkayothinen_US
dc.contributor.authorKazunori Kotanien_US
dc.contributor.otherMahidol Universityen_US
dc.contributor.otherJapan Advanced Institute of Science and Technologyen_US
dc.date.accessioned2021-02-03T06:25:01Z
dc.date.available2021-02-03T06:25:01Z
dc.date.issued2020-08-26en_US
dc.description.abstract© 2020 IEEE. In this paper, we present a method to camouflage an attack on image recognition system by using an adversarial patch embedded on a scan-ready QR code. Adversarial patch refers to a class of a real-world attack on a machine learning system that adds a 'patch' onto the image. However, unlike existing methods, they are highly conspicuous to human perception. As these attacks are performed in the real world, they require users to manipulate the scene. However, not only the patch catches the attention of the classification system but also bystanders' attention as well. We believe that forcing the adversarial patch into the form of a scan-ready QR code can conceal its primary reason to exist in the scene. The main challenge of the research is the process of forcing an adversarial patch into a scan-ready QR code while trying to retain as much information for the patch to work as a real-world adversarial example. The experiments had been done to investigate trade-off compared to training the patch in different shapes.en_US
dc.identifier.citation2020 Joint 9th International Conference on Informatics, Electronics and Vision and 2020 4th International Conference on Imaging, Vision and Pattern Recognition, ICIEV and icIVPR 2020. (2020)en_US
dc.identifier.doi10.1109/ICIEVicIVPR48672.2020.9306675en_US
dc.identifier.other2-s2.0-85099877310en_US
dc.identifier.urihttps://repository.li.mahidol.ac.th/handle/123456789/60917
dc.rightsMahidol Universityen_US
dc.rights.holderSCOPUSen_US
dc.source.urihttps://www.scopus.com/inward/record.uri?partnerID=HzOxMe3b&scp=85099877310&origin=inwarden_US
dc.subjectComputer Scienceen_US
dc.subjectEngineeringen_US
dc.titleAdversarialQR: An adversarial patch in QR code formaten_US
dc.typeConference Paperen_US
dspace.entity.typePublication
mu.datasource.scopushttps://www.scopus.com/inward/record.uri?partnerID=HzOxMe3b&scp=85099877310&origin=inwarden_US

Files

Collections