{"id":"https://openalex.org/W4411115246","doi":"https://doi.org/10.1007/s10207-025-01067-3","title":"Evaluating the Impact of Adversarial Patch Attacks on YOLO Models and the Implications for Edge AI Security","display_name":"Evaluating the Impact of Adversarial Patch Attacks on YOLO Models and the Implications for Edge AI Security","publication_year":2025,"publication_date":"2025-06-01","ids":{"openalex":"https://openalex.org/W4411115246","doi":"https://doi.org/10.1007/s10207-025-01067-3"},"language":"en","primary_location":{"id":"doi:10.1007/s10207-025-01067-3","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s10207-025-01067-3","pdf_url":"https://link.springer.com/content/pdf/10.1007/s10207-025-01067-3.pdf","source":{"id":"https://openalex.org/S164062316","display_name":"International Journal of Information Security","issn_l":"1615-5262","issn":["1615-5262","1615-5270"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Journal of Information Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://link.springer.com/content/pdf/10.1007/s10207-025-01067-3.pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5107106319","display_name":"Daniel L. Gala","orcid":null},"institutions":[{"id":"https://openalex.org/I165339363","display_name":"Universidad de Oviedo","ror":"https://ror.org/006gksa02","country_code":"ES","type":"education","lineage":["https://openalex.org/I165339363"]}],"countries":["ES"],"is_corresponding":true,"raw_author_name":"D. L. Gala","raw_affiliation_strings":["Polytechnic School of Engineering, University of Oviedo, Campus of Gijon, Asturias, Spain"],"affiliations":[{"raw_affiliation_string":"Polytechnic School of Engineering, University of Oviedo, Campus of Gijon, Asturias, Spain","institution_ids":["https://openalex.org/I165339363"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5024462010","display_name":"Julio Molleda","orcid":"https://orcid.org/0000-0002-2949-1195"},"institutions":[{"id":"https://openalex.org/I165339363","display_name":"Universidad de Oviedo","ror":"https://ror.org/006gksa02","country_code":"ES","type":"education","lineage":["https://openalex.org/I165339363"]}],"countries":["ES"],"is_corresponding":false,"raw_author_name":"J. Molleda","raw_affiliation_strings":["Department of Computer Science and Engineering, University of Oviedo, Campus of Gijon, Asturias, Spain"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science and Engineering, University of Oviedo, Campus of Gijon, Asturias, Spain","institution_ids":["https://openalex.org/I165339363"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5031476067","display_name":"Rub\u00e9n Usamentiaga","orcid":"https://orcid.org/0000-0003-0551-3203"},"institutions":[{"id":"https://openalex.org/I165339363","display_name":"Universidad de Oviedo","ror":"https://ror.org/006gksa02","country_code":"ES","type":"education","lineage":["https://openalex.org/I165339363"]}],"countries":["ES"],"is_corresponding":false,"raw_author_name":"R. Usamentiaga","raw_affiliation_strings":["Department of Computer Science and Engineering, University of Oviedo, Campus of Gijon, Asturias, Spain"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science and Engineering, University of Oviedo, Campus of Gijon, Asturias, Spain","institution_ids":["https://openalex.org/I165339363"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5107106319"],"corresponding_institution_ids":["https://openalex.org/I165339363"],"apc_list":{"value":2590,"currency":"EUR","value_usd":3190},"apc_paid":{"value":2590,"currency":"EUR","value_usd":3190},"fwci":5.5711,"has_fulltext":true,"cited_by_count":2,"citation_normalized_percentile":{"value":0.95395877,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":95,"max":96},"biblio":{"volume":"24","issue":"3","first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9969000220298767,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9837999939918518,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7881618738174438},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7630481719970703},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6718122959136963},{"id":"https://openalex.org/keywords/enhanced-data-rates-for-gsm-evolution","display_name":"Enhanced Data Rates for GSM Evolution","score":0.6355571746826172},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.5372393727302551},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.3619953393936157},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.29608964920043945}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7881618738174438},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7630481719970703},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6718122959136963},{"id":"https://openalex.org/C162307627","wikidata":"https://www.wikidata.org/wiki/Q204833","display_name":"Enhanced Data Rates for GSM Evolution","level":2,"score":0.6355571746826172},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.5372393727302551},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.3619953393936157},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.29608964920043945}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1007/s10207-025-01067-3","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s10207-025-01067-3","pdf_url":"https://link.springer.com/content/pdf/10.1007/s10207-025-01067-3.pdf","source":{"id":"https://openalex.org/S164062316","display_name":"International Journal of Information Security","issn_l":"1615-5262","issn":["1615-5262","1615-5270"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Journal of Information Security","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.1007/s10207-025-01067-3","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s10207-025-01067-3","pdf_url":"https://link.springer.com/content/pdf/10.1007/s10207-025-01067-3.pdf","source":{"id":"https://openalex.org/S164062316","display_name":"International Journal of Information Security","issn_l":"1615-5262","issn":["1615-5262","1615-5270"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Journal of Information Security","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320323823","display_name":"Universidad de Oviedo","ror":"https://ror.org/006gksa02"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4411115246.pdf","grobid_xml":"https://content.openalex.org/works/W4411115246.grobid-xml"},"referenced_works_count":27,"referenced_works":["https://openalex.org/W2031489346","https://openalex.org/W2108598243","https://openalex.org/W2161969291","https://openalex.org/W2765424254","https://openalex.org/W2930249865","https://openalex.org/W2947832965","https://openalex.org/W2963461515","https://openalex.org/W2963726920","https://openalex.org/W2963857521","https://openalex.org/W2969003636","https://openalex.org/W3007481080","https://openalex.org/W3103557498","https://openalex.org/W3112263620","https://openalex.org/W3204155906","https://openalex.org/W3216686652","https://openalex.org/W4206426144","https://openalex.org/W4221122242","https://openalex.org/W4225463226","https://openalex.org/W4247200422","https://openalex.org/W4292265390","https://openalex.org/W4385768289","https://openalex.org/W4386365787","https://openalex.org/W4390343664","https://openalex.org/W4392309188","https://openalex.org/W4393375887","https://openalex.org/W4401057069","https://openalex.org/W6600655081"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3126451824","https://openalex.org/W1561927205","https://openalex.org/W3191453585","https://openalex.org/W4297672492","https://openalex.org/W4310988119","https://openalex.org/W2060145807","https://openalex.org/W4248806346"],"abstract_inverted_index":{"Abstract":[0],"Machine":[1],"learning":[2,6],"(ML)":[3],"and":[4,19,28,47,106,158,181],"deep":[5],"methods":[7],"have":[8],"demonstrated":[9],"exceptional":[10],"performance":[11],"in":[12,196,200],"diverse":[13],"domains,":[14],"including":[15],"computer":[16],"vision,":[17],"speech":[18],"face":[20],"recognition,":[21],"autonomous":[22],"vehicles,":[23],"the":[24,33,54,63,95,104,115,151,176,179,183,229],"Internet":[25],"of":[26,35,65,97,108,150,243],"Things,":[27],"cybersecurity.":[29],"Despite":[30],"these":[31],"advances,":[32],"vulnerability":[34],"ML":[36,109],"systems":[37],"to":[38,44,81,85,102,132,212,227],"adversarial":[39,98,124,145,213],"attacks,":[40],"which":[41],"introduce":[42],"perturbations":[43,100],"fool":[45],"classifiers":[46],"detectors,":[48],"poses":[49],"significant":[50],"security":[51,64],"challenges.":[52],"As":[53],"artificial":[55],"intelligence":[56],"(AI)":[57],"industry":[58],"increasingly":[59],"adopts":[60],"edge":[61,224],"computing,":[62],"AI":[66,225],"models":[67,80,87,154,208],"becomes":[68],"critical.":[69],"Edge":[70],"devices,":[71],"constrained":[72],"by":[73,160,234],"limited":[74],"computational":[75],"resources,":[76],"must":[77],"run":[78,220],"smaller":[79,217,236],"achieve":[82],"comparable":[83],"latency":[84],"cloud-based":[86],"on":[88,123,129,178,182,223],"more":[89,210],"powerful":[90],"servers.":[91],"This":[92],"work":[93],"evaluates":[94],"impact":[96],"attacks-malicious":[99],"designed":[101,168],"degrade":[103],"accuracy":[105],"reliability":[107],"models-on":[110],"recent":[111,148,201],"YOLO":[112,153,188],"detectors":[113,135],"from":[114],"widely":[116],"used":[117],"Ultralytics":[118,152],"framework.":[119],"Specifically,":[120],"we":[121],"focus":[122],"patches-carefully":[125],"crafted":[126],"patterns":[127],"overlaid":[128],"an":[130,162,170],"image":[131],"mislead":[133],"object":[134,197],"into":[136],"ignoring":[137],"or":[138],"misclassifying":[139],"objects.":[140],"We":[141,174,219],"create":[142],"effective":[143],"naturalistic":[144],"patches":[146],"for":[147,169],"versions":[149],"(YOLOv5,":[155],"YOLOv8,":[156],"YOLOv9,":[157],"YOLOv10)":[159],"upgrading":[161],"existing":[163],"state-of-the-art":[164],"patch":[165],"generation":[166],"approach":[167],"earlier":[171],"YOLOv4":[172],"model.":[173],"evaluate":[175],"attacks":[177,214],"INRIA":[180],"MPII":[184],"datasets":[185],"across":[186],"multiple":[187],"models.":[189,202],"The":[190,203],"experimental":[191],"results":[192,204],"demonstrate":[193],"high":[194],"effectiveness":[195],"detection":[198],"evasion":[199],"suggest":[205],"that":[206],"larger":[207],"are":[209],"robust":[211],"than":[215],"their":[216],"counterparts.":[218],"inference":[221],"experiments":[222],"devices":[226],"highlight":[228],"response":[230],"time":[231],"improvement":[232],"achieved":[233],"using":[235],"models,":[237],"albeit":[238],"at":[239],"a":[240],"higher":[241],"risk":[242],"attack.":[244]},"counts_by_year":[{"year":2025,"cited_by_count":2}],"updated_date":"2026-03-10T16:38:18.471706","created_date":"2025-10-10T00:00:00"}
