{"id":"https://openalex.org/W4416751123","doi":"https://doi.org/10.1109/iros60139.2025.11246438","title":"Towards Physically Realizable Adversarial Attacks in Embodied Vision Navigation","display_name":"Towards Physically Realizable Adversarial Attacks in Embodied Vision Navigation","publication_year":2025,"publication_date":"2025-10-19","ids":{"openalex":"https://openalex.org/W4416751123","doi":"https://doi.org/10.1109/iros60139.2025.11246438"},"language":null,"primary_location":{"id":"doi:10.1109/iros60139.2025.11246438","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iros60139.2025.11246438","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE/RSJ International Conference on Intelligent Robots and Systems (IROS)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5106541035","display_name":"Meng Chen","orcid":"https://orcid.org/0009-0009-8899-038X"},"institutions":[{"id":"https://openalex.org/I139759216","display_name":"Beijing University of Posts and Telecommunications","ror":"https://ror.org/04w9fbh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I139759216"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Meng Chen","raw_affiliation_strings":["Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876"],"affiliations":[{"raw_affiliation_string":"Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876","institution_ids":["https://openalex.org/I139759216"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5047823319","display_name":"Jiawei Tu","orcid":"https://orcid.org/0000-0002-9204-7919"},"institutions":[{"id":"https://openalex.org/I139759216","display_name":"Beijing University of Posts and Telecommunications","ror":"https://ror.org/04w9fbh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I139759216"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiawei Tu","raw_affiliation_strings":["Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876"],"affiliations":[{"raw_affiliation_string":"Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876","institution_ids":["https://openalex.org/I139759216"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100340165","display_name":"Chao Qi","orcid":"https://orcid.org/0000-0002-4771-2617"},"institutions":[{"id":"https://openalex.org/I139759216","display_name":"Beijing University of Posts and Telecommunications","ror":"https://ror.org/04w9fbh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I139759216"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chao Qi","raw_affiliation_strings":["Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876"],"affiliations":[{"raw_affiliation_string":"Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876","institution_ids":["https://openalex.org/I139759216"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5008886406","display_name":"Yonghao Dang","orcid":"https://orcid.org/0000-0002-1118-5587"},"institutions":[{"id":"https://openalex.org/I139759216","display_name":"Beijing University of Posts and Telecommunications","ror":"https://ror.org/04w9fbh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I139759216"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yonghao Dang","raw_affiliation_strings":["Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876"],"affiliations":[{"raw_affiliation_string":"Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876","institution_ids":["https://openalex.org/I139759216"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5054137460","display_name":"Feng Zhou","orcid":"https://orcid.org/0000-0001-9184-2040"},"institutions":[{"id":"https://openalex.org/I139759216","display_name":"Beijing University of Posts and Telecommunications","ror":"https://ror.org/04w9fbh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I139759216"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Feng Zhou","raw_affiliation_strings":["Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876"],"affiliations":[{"raw_affiliation_string":"Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876","institution_ids":["https://openalex.org/I139759216"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100323766","display_name":"Wei Wei","orcid":null},"institutions":[{"id":"https://openalex.org/I139759216","display_name":"Beijing University of Posts and Telecommunications","ror":"https://ror.org/04w9fbh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I139759216"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wei Wei","raw_affiliation_strings":["Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876"],"affiliations":[{"raw_affiliation_string":"Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876","institution_ids":["https://openalex.org/I139759216"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5102080920","display_name":"Jianqin Yin","orcid":null},"institutions":[{"id":"https://openalex.org/I139759216","display_name":"Beijing University of Posts and Telecommunications","ror":"https://ror.org/04w9fbh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I139759216"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jianqin Yin","raw_affiliation_strings":["Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876"],"affiliations":[{"raw_affiliation_string":"Beijing University of Posts and Telecommunications,School of Intelligent Engineering and Automation,Beijing,China,100876","institution_ids":["https://openalex.org/I139759216"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5106541035"],"corresponding_institution_ids":["https://openalex.org/I139759216"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.20575686,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"11819","last_page":"11825"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9954000115394592,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9954000115394592,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.0006000000284984708,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.0003000000142492354,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/embodied-cognition","display_name":"Embodied cognition","score":0.7907999753952026},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.73089998960495},{"id":"https://openalex.org/keywords/naturalness","display_name":"Naturalness","score":0.573199987411499},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.525600016117096},{"id":"https://openalex.org/keywords/perception","display_name":"Perception","score":0.44940000772476196},{"id":"https://openalex.org/keywords/object","display_name":"Object (grammar)","score":0.4336000084877014},{"id":"https://openalex.org/keywords/silhouette","display_name":"Silhouette","score":0.420199990272522},{"id":"https://openalex.org/keywords/visualization","display_name":"Visualization","score":0.4147000014781952}],"concepts":[{"id":"https://openalex.org/C100609095","wikidata":"https://www.wikidata.org/wiki/Q1335050","display_name":"Embodied cognition","level":2,"score":0.7907999753952026},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.73089998960495},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6693999767303467},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6532999873161316},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.6273999810218811},{"id":"https://openalex.org/C134537474","wikidata":"https://www.wikidata.org/wiki/Q17144832","display_name":"Naturalness","level":2,"score":0.573199987411499},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.525600016117096},{"id":"https://openalex.org/C26760741","wikidata":"https://www.wikidata.org/wiki/Q160402","display_name":"Perception","level":2,"score":0.44940000772476196},{"id":"https://openalex.org/C2781238097","wikidata":"https://www.wikidata.org/wiki/Q175026","display_name":"Object (grammar)","level":2,"score":0.4336000084877014},{"id":"https://openalex.org/C58103923","wikidata":"https://www.wikidata.org/wiki/Q2286025","display_name":"Silhouette","level":2,"score":0.420199990272522},{"id":"https://openalex.org/C36464697","wikidata":"https://www.wikidata.org/wiki/Q451553","display_name":"Visualization","level":2,"score":0.4147000014781952},{"id":"https://openalex.org/C107457646","wikidata":"https://www.wikidata.org/wiki/Q207434","display_name":"Human\u2013computer interaction","level":1,"score":0.36579999327659607},{"id":"https://openalex.org/C2776151529","wikidata":"https://www.wikidata.org/wiki/Q3045304","display_name":"Object detection","level":3,"score":0.3531000018119812},{"id":"https://openalex.org/C59519942","wikidata":"https://www.wikidata.org/wiki/Q650665","display_name":"Drone","level":2,"score":0.3449000120162964},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.32519999146461487},{"id":"https://openalex.org/C90509273","wikidata":"https://www.wikidata.org/wiki/Q11012","display_name":"Robot","level":2,"score":0.3133000135421753},{"id":"https://openalex.org/C5339829","wikidata":"https://www.wikidata.org/wiki/Q1425977","display_name":"Machine vision","level":2,"score":0.30799999833106995},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.3061999976634979},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.2969000041484833},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.2888000011444092},{"id":"https://openalex.org/C207347870","wikidata":"https://www.wikidata.org/wiki/Q371174","display_name":"Gesture","level":2,"score":0.2662000060081482},{"id":"https://openalex.org/C193611912","wikidata":"https://www.wikidata.org/wiki/Q4677596","display_name":"Active vision","level":2,"score":0.262800008058548}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/iros60139.2025.11246438","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iros60139.2025.11246438","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE/RSJ International Conference on Intelligent Robots and Systems (IROS)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":28,"referenced_works":["https://openalex.org/W2535873859","https://openalex.org/W2798302089","https://openalex.org/W2950697717","https://openalex.org/W2963150697","https://openalex.org/W2963448658","https://openalex.org/W2963857521","https://openalex.org/W2988535323","https://openalex.org/W3009928773","https://openalex.org/W3108072218","https://openalex.org/W3108324072","https://openalex.org/W3109085430","https://openalex.org/W3179647175","https://openalex.org/W3185095134","https://openalex.org/W3200450146","https://openalex.org/W3214186465","https://openalex.org/W4220736817","https://openalex.org/W4221146591","https://openalex.org/W4225786036","https://openalex.org/W4312918928","https://openalex.org/W4313141751","https://openalex.org/W4323308589","https://openalex.org/W4382362889","https://openalex.org/W4386083027","https://openalex.org/W4390872462","https://openalex.org/W4390873864","https://openalex.org/W4401415324","https://openalex.org/W4402727632","https://openalex.org/W4404819869"],"related_works":[],"abstract_inverted_index":{"The":[0],"significant":[1],"advancements":[2],"in":[3,60,84,143,160,188],"embodied":[4,25,50,97],"vision":[5,26,51],"navigation":[6,27,52,85,98,177],"have":[7],"raised":[8],"concerns":[9],"about":[10],"its":[11],"susceptibility":[12],"to":[13,42,58,76,103,113,150],"adversarial":[14,22,101,173],"attacks":[15,37,71],"exploiting":[16],"deep":[17],"neural":[18],"networks.":[19],"Investigating":[20],"the":[21,32,65,131,138,147,176],"robustness":[23],"of":[24,34,183],"is":[28,163,194],"crucial,":[29],"especially":[30],"given":[31],"threat":[33],"3D":[35],"physical":[36,55,66,70],"that":[38,171],"could":[39],"pose":[40],"risks":[41],"human":[43,151],"safety.":[44],"However,":[45],"existing":[46],"attack":[47,94],"methods":[48,187],"for":[49,72,96],"often":[53],"lack":[54],"feasibility":[56],"due":[57],"challenges":[59],"transferring":[61],"digital":[62],"perturbations":[63],"into":[64],"world.":[67],"Moreover,":[68],"current":[69],"object":[73],"detection":[74],"struggle":[75],"achieve":[77],"both":[78,106],"multi-view":[79,122],"effectiveness":[80,115],"and":[81,108,191],"visual":[82],"naturalness":[83],"scenarios.":[86],"To":[87,145],"address":[88],"this,":[89],"we":[90,119,153],"propose":[91],"a":[92,121,155],"practical":[93],"method":[95],"by":[99,180],"attaching":[100],"patches":[102,174],"objects,":[104],"where":[105],"opacity":[107,157,162],"textures":[109],"are":[110],"learnable.":[111],"Specifically,":[112],"ensure":[114],"across":[116],"varying":[117],"viewpoints,":[118],"employ":[120],"optimization":[123,158],"strategy":[124],"based":[125,134],"on":[126,135],"object-aware":[127],"sampling,":[128],"which":[129,161],"optimizes":[130],"patch\u2019s":[132],"texture":[133,166],"feedback":[136],"from":[137],"vision-based":[139],"perception":[140],"model":[141],"used":[142],"navigation.":[144],"make":[146],"patch":[148],"inconspicuous":[149],"observers,":[152],"introduce":[154],"two-stage":[156],"mechanism,":[159],"fine-tuned":[164],"after":[165],"optimization.":[167],"Experimental":[168],"results":[169],"demonstrate":[170],"our":[172],"decrease":[175],"success":[178],"rate":[179],"an":[181],"average":[182],"22.39%,":[184],"outperforming":[185],"previous":[186],"practicality,":[189],"effectiveness,":[190],"naturalness.":[192],"Code":[193],"available":[195],"at:":[196],"github.com/chen37058/Physical-Attacks-in-Embodied-Nav.":[197]},"counts_by_year":[],"updated_date":"2026-03-07T16:01:11.037858","created_date":"2025-11-28T00:00:00"}
