Skip to main navigation Skip to search Skip to main content

AdvGLOW: Covert Adversarial Attacks Against Autonomous Driving Perception

  • Beihang University
  • State Key Laboratory of Intelligent Transportation Systems
  • Zhongguancun Laboratory

Research output: Contribution to journalArticlepeer-review

Abstract

Autonomous driving technology is becoming increasingly popular, transforming transportation systems worldwide. However, its perception modules are highly vulnerable to adversarial attacks, which exploit weaknesses in deep neural networks, leading to potential safety risks and compromised decision-making in autonomous systems. In this study, we propose AdvGLOW, a novel adversarial attack model tailored for covert attacks on autonomous driving perception modules in traffic scenarios. Leveraging an information exchange network within a flow-based model, AdvGLOW introduces reversible data transformations to achieve high attack success with minimal perturbation visibility. By optimizing a combined global-local loss, our model preserves structural details while embedding adversarial features, resulting in robust yet visually imperceptible adversarial samples. We conduct extensive experiments on traffic-related datasets, demonstrating that the generated adversarial samples are challenging for both humans and algorithms to detect. Additionally, this method exhibits strong attack robustness and transferability.

Original languageEnglish
Article number9210067
JournalJournal of Intelligent and Connected Vehicles
Volume8
Issue number4
DOIs
StatePublished - 2025

Keywords

  • adversarial attack
  • autonomous driving
  • flow-based generation
  • perception test

Fingerprint

Dive into the research topics of 'AdvGLOW: Covert Adversarial Attacks Against Autonomous Driving Perception'. Together they form a unique fingerprint.

Cite this