{"id":"https://openalex.org/W4405308254","doi":"https://doi.org/10.1007/s44267-024-00066-7","title":"Patch is enough: naturalistic adversarial patch against vision-language pre-training models","display_name":"Patch is enough: naturalistic adversarial patch against vision-language pre-training models","publication_year":2024,"publication_date":"2024-12-13","ids":{"openalex":"https://openalex.org/W4405308254","doi":"https://doi.org/10.1007/s44267-024-00066-7"},"language":"en","primary_location":{"id":"doi:10.1007/s44267-024-00066-7","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s44267-024-00066-7","pdf_url":"https://link.springer.com/content/pdf/10.1007/s44267-024-00066-7.pdf","source":{"id":"https://openalex.org/S4387289164","display_name":"Visual Intelligence","issn_l":"2731-9008","issn":["2731-9008"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Visual Intelligence","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"diamond","oa_url":"https://link.springer.com/content/pdf/10.1007/s44267-024-00066-7.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5045427721","display_name":"Dehong Kong","orcid":"https://orcid.org/0000-0002-2296-3209"},"institutions":[{"id":"https://openalex.org/I157773358","display_name":"Sun Yat-sen University","ror":"https://ror.org/0064kty71","country_code":"CN","type":"education","lineage":["https://openalex.org/I157773358"]},{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Dehong Kong","raw_affiliation_strings":["School of Cyber Science and Technology, Shenzhen Campus of Sun Yat-sen University, Shenzhen, 518107, China","The State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, 310058, China"],"affiliations":[{"raw_affiliation_string":"School of Cyber Science and Technology, Shenzhen Campus of Sun Yat-sen University, Shenzhen, 518107, China","institution_ids":["https://openalex.org/I157773358"]},{"raw_affiliation_string":"The State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, 310058, China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102792226","display_name":"Siyuan Liang","orcid":"https://orcid.org/0000-0001-7865-1530"},"institutions":[{"id":"https://openalex.org/I165932596","display_name":"National University of Singapore","ror":"https://ror.org/01tgyzw49","country_code":"SG","type":"education","lineage":["https://openalex.org/I165932596"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Siyuan Liang","raw_affiliation_strings":["School of Computing, National University of Singapore, Singapore, 119077, Singapore"],"affiliations":[{"raw_affiliation_string":"School of Computing, National University of Singapore, Singapore, 119077, Singapore","institution_ids":["https://openalex.org/I165932596"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5110771361","display_name":"Xiaopeng Zhu","orcid":null},"institutions":[{"id":"https://openalex.org/I4210137956","display_name":"Guangdong Testing Institute for Product Quality Supervision","ror":"https://ror.org/03wdfwr71","country_code":"CN","type":"education","lineage":["https://openalex.org/I4210137956"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaopeng Zhu","raw_affiliation_strings":["Guangdong Testing Institute of Product Quality Supervision, Guangzhou, 510670, China"],"affiliations":[{"raw_affiliation_string":"Guangdong Testing Institute of Product Quality Supervision, Guangzhou, 510670, China","institution_ids":["https://openalex.org/I4210137956"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5004004578","display_name":"Yuansheng Zhong","orcid":"https://orcid.org/0009-0009-7671-9795"},"institutions":[{"id":"https://openalex.org/I4210137956","display_name":"Guangdong Testing Institute for Product Quality Supervision","ror":"https://ror.org/03wdfwr71","country_code":"CN","type":"education","lineage":["https://openalex.org/I4210137956"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yuansheng Zhong","raw_affiliation_strings":["Guangdong Testing Institute of Product Quality Supervision, Guangzhou, 510670, China"],"affiliations":[{"raw_affiliation_string":"Guangdong Testing Institute of Product Quality Supervision, Guangzhou, 510670, China","institution_ids":["https://openalex.org/I4210137956"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5057999649","display_name":"Wenqi Ren","orcid":"https://orcid.org/0000-0001-5481-653X"},"institutions":[{"id":"https://openalex.org/I157773358","display_name":"Sun Yat-sen University","ror":"https://ror.org/0064kty71","country_code":"CN","type":"education","lineage":["https://openalex.org/I157773358"]},{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wenqi Ren","raw_affiliation_strings":["School of Cyber Science and Technology, Shenzhen Campus of Sun Yat-sen University, Shenzhen, 518107, China","The State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, 310058, China"],"affiliations":[{"raw_affiliation_string":"School of Cyber Science and Technology, Shenzhen Campus of Sun Yat-sen University, Shenzhen, 518107, China","institution_ids":["https://openalex.org/I157773358"]},{"raw_affiliation_string":"The State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, 310058, China","institution_ids":["https://openalex.org/I76130692"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5045427721"],"corresponding_institution_ids":["https://openalex.org/I157773358","https://openalex.org/I76130692"],"apc_list":null,"apc_paid":null,"fwci":2.3847,"has_fulltext":true,"cited_by_count":7,"citation_normalized_percentile":{"value":0.90593926,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":100},"biblio":{"volume":"2","issue":"1","first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11714","display_name":"Multimodal Machine Learning Applications","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11307","display_name":"Domain Adaptation and Few-Shot Learning","score":0.9955000281333923,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.6954703330993652},{"id":"https://openalex.org/keywords/training","display_name":"Training (meteorology)","score":0.5985560417175293},{"id":"https://openalex.org/keywords/naturalism","display_name":"Naturalism","score":0.523524284362793},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5053523182868958},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4742003083229065},{"id":"https://openalex.org/keywords/psychology","display_name":"Psychology","score":0.3363640606403351},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3282383382320404},{"id":"https://openalex.org/keywords/natural-language-processing","display_name":"Natural language processing","score":0.32551807165145874},{"id":"https://openalex.org/keywords/geography","display_name":"Geography","score":0.1858474612236023},{"id":"https://openalex.org/keywords/epistemology","display_name":"Epistemology","score":0.11199557781219482},{"id":"https://openalex.org/keywords/philosophy","display_name":"Philosophy","score":0.08776471018791199},{"id":"https://openalex.org/keywords/meteorology","display_name":"Meteorology","score":0.0873904824256897}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.6954703330993652},{"id":"https://openalex.org/C2777211547","wikidata":"https://www.wikidata.org/wiki/Q17141490","display_name":"Training (meteorology)","level":2,"score":0.5985560417175293},{"id":"https://openalex.org/C43236755","wikidata":"https://www.wikidata.org/wiki/Q56000","display_name":"Naturalism","level":2,"score":0.523524284362793},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5053523182868958},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4742003083229065},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.3363640606403351},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3282383382320404},{"id":"https://openalex.org/C204321447","wikidata":"https://www.wikidata.org/wiki/Q30642","display_name":"Natural language processing","level":1,"score":0.32551807165145874},{"id":"https://openalex.org/C205649164","wikidata":"https://www.wikidata.org/wiki/Q1071","display_name":"Geography","level":0,"score":0.1858474612236023},{"id":"https://openalex.org/C111472728","wikidata":"https://www.wikidata.org/wiki/Q9471","display_name":"Epistemology","level":1,"score":0.11199557781219482},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.08776471018791199},{"id":"https://openalex.org/C153294291","wikidata":"https://www.wikidata.org/wiki/Q25261","display_name":"Meteorology","level":1,"score":0.0873904824256897}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1007/s44267-024-00066-7","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s44267-024-00066-7","pdf_url":"https://link.springer.com/content/pdf/10.1007/s44267-024-00066-7.pdf","source":{"id":"https://openalex.org/S4387289164","display_name":"Visual Intelligence","issn_l":"2731-9008","issn":["2731-9008"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Visual Intelligence","raw_type":"journal-article"},{"id":"pmh:oai:doaj.org/article:c87c92f554ec49888574afaf3ebf4399","is_oa":true,"landing_page_url":"https://doaj.org/article/c87c92f554ec49888574afaf3ebf4399","pdf_url":null,"source":{"id":"https://openalex.org/S112646816","display_name":"SHILAP Revista de lepidopterolog\u00eda","issn_l":"0300-5267","issn":["0300-5267","2340-4078"],"is_oa":true,"is_in_doaj":true,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Visual Intelligence, Vol 2, Iss 1, Pp 1-10 (2024)","raw_type":"article"}],"best_oa_location":{"id":"doi:10.1007/s44267-024-00066-7","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s44267-024-00066-7","pdf_url":"https://link.springer.com/content/pdf/10.1007/s44267-024-00066-7.pdf","source":{"id":"https://openalex.org/S4387289164","display_name":"Visual Intelligence","issn_l":"2731-9008","issn":["2731-9008"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Visual Intelligence","raw_type":"journal-article"},"sustainable_development_goals":[{"score":0.5699999928474426,"id":"https://metadata.un.org/sdg/4","display_name":"Quality Education"}],"awards":[{"id":"https://openalex.org/G4553474027","display_name":null,"funder_award_id":"YJ202205","funder_id":"https://openalex.org/F4320335787","funder_display_name":"Fundamental Research Funds for the Central Universities"},{"id":"https://openalex.org/G8521719573","display_name":null,"funder_award_id":"23xkjc010","funder_id":"https://openalex.org/F4320321160","funder_display_name":"Sun Yat-sen University"}],"funders":[{"id":"https://openalex.org/F4320321160","display_name":"Sun Yat-sen University","ror":"https://ror.org/0064kty71"},{"id":"https://openalex.org/F4320322927","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884"},{"id":"https://openalex.org/F4320335787","display_name":"Fundamental Research Funds for the Central Universities","ror":null}],"has_content":{"pdf":true,"grobid_xml":false},"content_urls":{"pdf":"https://content.openalex.org/works/W4405308254.pdf"},"referenced_works_count":46,"referenced_works":["https://openalex.org/W1583837637","https://openalex.org/W1773149199","https://openalex.org/W1861492603","https://openalex.org/W1901129140","https://openalex.org/W1905882502","https://openalex.org/W2595233870","https://openalex.org/W2596164567","https://openalex.org/W2602856279","https://openalex.org/W2604292070","https://openalex.org/W2640329709","https://openalex.org/W2911671827","https://openalex.org/W2913954081","https://openalex.org/W2914304175","https://openalex.org/W2938470389","https://openalex.org/W2946086442","https://openalex.org/W3016749948","https://openalex.org/W3018458867","https://openalex.org/W3020257313","https://openalex.org/W3094502228","https://openalex.org/W3117825960","https://openalex.org/W3135367836","https://openalex.org/W3184735396","https://openalex.org/W3204155906","https://openalex.org/W4200634956","https://openalex.org/W4205807230","https://openalex.org/W4221147180","https://openalex.org/W4221167445","https://openalex.org/W4225832925","https://openalex.org/W4226182655","https://openalex.org/W4236965008","https://openalex.org/W4283317927","https://openalex.org/W4285787235","https://openalex.org/W4297948362","https://openalex.org/W4301409532","https://openalex.org/W4310427734","https://openalex.org/W4378713361","https://openalex.org/W4385261657","https://openalex.org/W4385354180","https://openalex.org/W4386794620","https://openalex.org/W4402288734","https://openalex.org/W6600466347","https://openalex.org/W6676297131","https://openalex.org/W6687483927","https://openalex.org/W6754363872","https://openalex.org/W6779823529","https://openalex.org/W6847601135"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3126451824","https://openalex.org/W1561927205","https://openalex.org/W3191453585","https://openalex.org/W4297672492","https://openalex.org/W2087780682","https://openalex.org/W4310988119","https://openalex.org/W4285226279"],"abstract_inverted_index":{"Abstract":[0],"Visual":[1],"language":[2],"pre-training":[3],"(VLP)":[4],"models":[5,38,103],"have":[6],"demonstrated":[7],"significant":[8,50],"success":[9,166],"in":[10,29,146],"various":[11],"domains,":[12],"but":[13],"they":[14],"remain":[15],"vulnerable":[16],"to":[17,57,66,104,114,138],"adversarial":[18,22,33,53],"attacks.":[19],"Addressing":[20],"these":[21,74],"vulnerabilities":[23],"is":[24],"crucial":[25],"for":[26,86,150],"enhancing":[27],"security":[28],"multi-modal":[30],"learning.":[31],"Traditionally,":[32],"methods":[34],"that":[35,81,154],"target":[36],"VLP":[37],"involve":[39],"simultaneous":[40],"perturbation":[41],"of":[42,92,110,122],"images":[43],"and":[44,108,118],"text.":[45,95],"However,":[46],"this":[47],"approach":[48],"faces":[49],"challenges.":[51],"First,":[52],"perturbations":[54],"often":[55],"fail":[56],"translate":[58],"effectively":[59],"into":[60],"real-world":[61],"scenarios.":[62],"Second,":[63],"direct":[64],"modifications":[65],"the":[67,90,93,106,111,120,127],"text":[68],"are":[69],"conspicuously":[70],"visible.":[71],"To":[72],"overcome":[73],"limitations,":[75],"we":[76,125],"propose":[77],"a":[78,147,163],"novel":[79],"strategy":[80],"uses":[82],"only":[83],"image":[84],"patches":[85],"attacks,":[87,124],"thus":[88],"preserving":[89],"integrity":[91],"original":[94],"Our":[96],"method":[97,157],"leverages":[98],"prior":[99],"knowledge":[100],"from":[101],"diffusion":[102],"enhance":[105],"authenticity":[107],"naturalness":[109],"perturbations.":[112],"Moreover,":[113],"optimize":[115],"patch":[116,141],"placement":[117],"improve":[119],"effectiveness":[121],"our":[123,155],"utilize":[126],"cross-attention":[128],"mechanism,":[129],"which":[130],"encapsulates":[131],"inter-modal":[132],"interactions":[133],"by":[134],"generating":[135],"attention":[136],"maps":[137],"guide":[139],"strategic":[140],"placement.":[142],"Extensive":[143],"experiments":[144],"conducted":[145],"white-box":[148],"setting":[149],"image-to-text":[151],"scenarios":[152],"reveal":[153],"proposed":[156],"significantly":[158],"outperforms":[159],"existing":[160],"techniques,":[161],"achieving":[162],"100%":[164],"attack":[165],"rate.":[167]},"counts_by_year":[{"year":2026,"cited_by_count":4},{"year":2025,"cited_by_count":3}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
