{"id":"https://openalex.org/W4416749209","doi":"https://doi.org/10.1109/iros60139.2025.11246866","title":"Adversarial Attacks and Detection in Visual Place Recognition for Safer Robot Navigation","display_name":"Adversarial Attacks and Detection in Visual Place Recognition for Safer Robot Navigation","publication_year":2025,"publication_date":"2025-10-19","ids":{"openalex":"https://openalex.org/W4416749209","doi":"https://doi.org/10.1109/iros60139.2025.11246866"},"language":null,"primary_location":{"id":"doi:10.1109/iros60139.2025.11246866","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iros60139.2025.11246866","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE/RSJ International Conference on Intelligent Robots and Systems (IROS)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5074597466","display_name":"Connor Malone","orcid":"https://orcid.org/0000-0001-7223-6440"},"institutions":[{"id":"https://openalex.org/I160993911","display_name":"Queensland University of Technology","ror":"https://ror.org/03pnv4752","country_code":"AU","type":"education","lineage":["https://openalex.org/I160993911"]},{"id":"https://openalex.org/I4210127558","display_name":"Australian Centre for Robotic Vision","ror":"https://ror.org/02zv9xv82","country_code":"AU","type":"facility","lineage":["https://openalex.org/I4210127558"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Connor Malone","raw_affiliation_strings":["School of Electrical Engineering and Robotics at the Queensland University of Technology,QUT Centre for Robotics,Brisbane,Australia"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Electrical Engineering and Robotics at the Queensland University of Technology,QUT Centre for Robotics,Brisbane,Australia","institution_ids":["https://openalex.org/I160993911","https://openalex.org/I4210127558"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5104435485","display_name":"Owen Claxton","orcid":null},"institutions":[{"id":"https://openalex.org/I160993911","display_name":"Queensland University of Technology","ror":"https://ror.org/03pnv4752","country_code":"AU","type":"education","lineage":["https://openalex.org/I160993911"]},{"id":"https://openalex.org/I4210127558","display_name":"Australian Centre for Robotic Vision","ror":"https://ror.org/02zv9xv82","country_code":"AU","type":"facility","lineage":["https://openalex.org/I4210127558"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Owen Claxton","raw_affiliation_strings":["School of Electrical Engineering and Robotics at the Queensland University of Technology,QUT Centre for Robotics,Brisbane,Australia"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Electrical Engineering and Robotics at the Queensland University of Technology,QUT Centre for Robotics,Brisbane,Australia","institution_ids":["https://openalex.org/I160993911","https://openalex.org/I4210127558"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5010259253","display_name":"Iman Shames","orcid":"https://orcid.org/0000-0001-7308-3546"},"institutions":[{"id":"https://openalex.org/I118347636","display_name":"Australian National University","ror":"https://ror.org/019wvm592","country_code":"AU","type":"education","lineage":["https://openalex.org/I118347636"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Iman Shames","raw_affiliation_strings":["at the Australian National University,CIICADA Lab, College of Engineering, Computing and Cybernetics,Canberra,Australia"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"at the Australian National University,CIICADA Lab, College of Engineering, Computing and Cybernetics,Canberra,Australia","institution_ids":["https://openalex.org/I118347636"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5078340555","display_name":"Michael Milford","orcid":"https://orcid.org/0000-0002-5162-1793"},"institutions":[{"id":"https://openalex.org/I160993911","display_name":"Queensland University of Technology","ror":"https://ror.org/03pnv4752","country_code":"AU","type":"education","lineage":["https://openalex.org/I160993911"]},{"id":"https://openalex.org/I4210127558","display_name":"Australian Centre for Robotic Vision","ror":"https://ror.org/02zv9xv82","country_code":"AU","type":"facility","lineage":["https://openalex.org/I4210127558"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Michael Milford","raw_affiliation_strings":["School of Electrical Engineering and Robotics at the Queensland University of Technology,QUT Centre for Robotics,Brisbane,Australia"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Electrical Engineering and Robotics at the Queensland University of Technology,QUT Centre for Robotics,Brisbane,Australia","institution_ids":["https://openalex.org/I160993911","https://openalex.org/I4210127558"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.17497355,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"12916","last_page":"12923"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9819999933242798,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9819999933242798,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.0031999999191612005,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10191","display_name":"Robotics and Sensor-Based Localization","score":0.00139999995008111,"subfield":{"id":"https://openalex.org/subfields/2202","display_name":"Aerospace Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/safer","display_name":"SAFER","score":0.7768999934196472},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7164000272750854},{"id":"https://openalex.org/keywords/robot","display_name":"Robot","score":0.5490999817848206},{"id":"https://openalex.org/keywords/robotics","display_name":"Robotics","score":0.5422999858856201},{"id":"https://openalex.org/keywords/perception","display_name":"Perception","score":0.35109999775886536},{"id":"https://openalex.org/keywords/variety","display_name":"Variety (cybernetics)","score":0.3352000117301941},{"id":"https://openalex.org/keywords/object-detection","display_name":"Object detection","score":0.3294999897480011},{"id":"https://openalex.org/keywords/detector","display_name":"Detector","score":0.3255000114440918},{"id":"https://openalex.org/keywords/reduction","display_name":"Reduction (mathematics)","score":0.32260000705718994}],"concepts":[{"id":"https://openalex.org/C2776654903","wikidata":"https://www.wikidata.org/wiki/Q2601463","display_name":"SAFER","level":2,"score":0.7768999934196472},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7164000272750854},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.7057999968528748},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.614799976348877},{"id":"https://openalex.org/C90509273","wikidata":"https://www.wikidata.org/wiki/Q11012","display_name":"Robot","level":2,"score":0.5490999817848206},{"id":"https://openalex.org/C34413123","wikidata":"https://www.wikidata.org/wiki/Q170978","display_name":"Robotics","level":3,"score":0.5422999858856201},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.4986000061035156},{"id":"https://openalex.org/C26760741","wikidata":"https://www.wikidata.org/wiki/Q160402","display_name":"Perception","level":2,"score":0.35109999775886536},{"id":"https://openalex.org/C136197465","wikidata":"https://www.wikidata.org/wiki/Q1729295","display_name":"Variety (cybernetics)","level":2,"score":0.3352000117301941},{"id":"https://openalex.org/C2776151529","wikidata":"https://www.wikidata.org/wiki/Q3045304","display_name":"Object detection","level":3,"score":0.3294999897480011},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.32850000262260437},{"id":"https://openalex.org/C94915269","wikidata":"https://www.wikidata.org/wiki/Q1834857","display_name":"Detector","level":2,"score":0.3255000114440918},{"id":"https://openalex.org/C111335779","wikidata":"https://www.wikidata.org/wiki/Q3454686","display_name":"Reduction (mathematics)","level":2,"score":0.32260000705718994},{"id":"https://openalex.org/C95922358","wikidata":"https://www.wikidata.org/wiki/Q5432725","display_name":"False positive rate","level":2,"score":0.31349998712539673},{"id":"https://openalex.org/C2778403875","wikidata":"https://www.wikidata.org/wiki/Q20312394","display_name":"Adversarial machine learning","level":3,"score":0.31349998712539673},{"id":"https://openalex.org/C105339364","wikidata":"https://www.wikidata.org/wiki/Q2297740","display_name":"Software deployment","level":2,"score":0.31189998984336853},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.310699999332428},{"id":"https://openalex.org/C153701036","wikidata":"https://www.wikidata.org/wiki/Q659974","display_name":"Trustworthiness","level":2,"score":0.3102000057697296},{"id":"https://openalex.org/C2776401178","wikidata":"https://www.wikidata.org/wiki/Q12050496","display_name":"Feature (linguistics)","level":2,"score":0.30469998717308044},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.2913999855518341},{"id":"https://openalex.org/C204323151","wikidata":"https://www.wikidata.org/wiki/Q905424","display_name":"Range (aeronautics)","level":2,"score":0.28119999170303345},{"id":"https://openalex.org/C52622490","wikidata":"https://www.wikidata.org/wiki/Q1026626","display_name":"Feature extraction","level":2,"score":0.27570000290870667},{"id":"https://openalex.org/C175154964","wikidata":"https://www.wikidata.org/wiki/Q380077","display_name":"Task analysis","level":3,"score":0.27559998631477356},{"id":"https://openalex.org/C6528762","wikidata":"https://www.wikidata.org/wiki/Q1574298","display_name":"Traffic sign recognition","level":4,"score":0.2754000127315521},{"id":"https://openalex.org/C2775924081","wikidata":"https://www.wikidata.org/wiki/Q55608371","display_name":"Control (management)","level":2,"score":0.2669999897480011},{"id":"https://openalex.org/C139676723","wikidata":"https://www.wikidata.org/wiki/Q1193832","display_name":"Sign (mathematics)","level":2,"score":0.2623000144958496},{"id":"https://openalex.org/C18762648","wikidata":"https://www.wikidata.org/wiki/Q42213","display_name":"Work (physics)","level":2,"score":0.2563000023365021},{"id":"https://openalex.org/C12725497","wikidata":"https://www.wikidata.org/wiki/Q810247","display_name":"Baseline (sea)","level":2,"score":0.2535000145435333},{"id":"https://openalex.org/C36464697","wikidata":"https://www.wikidata.org/wiki/Q451553","display_name":"Visualization","level":2,"score":0.2529999911785126}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/iros60139.2025.11246866","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iros60139.2025.11246866","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE/RSJ International Conference on Intelligent Robots and Systems (IROS)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320315885","display_name":"Australian Government","ror":"https://ror.org/0314h5y94"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":32,"referenced_works":["https://openalex.org/W1612997784","https://openalex.org/W2099005886","https://openalex.org/W2156565444","https://openalex.org/W2558027072","https://openalex.org/W2561975083","https://openalex.org/W2593182419","https://openalex.org/W2620629206","https://openalex.org/W2740323046","https://openalex.org/W2774018344","https://openalex.org/W2798302089","https://openalex.org/W2959364614","https://openalex.org/W2974428947","https://openalex.org/W2990519439","https://openalex.org/W2998656009","https://openalex.org/W3036321094","https://openalex.org/W3103123363","https://openalex.org/W3124676898","https://openalex.org/W3135588990","https://openalex.org/W3163149666","https://openalex.org/W3175575864","https://openalex.org/W4205172893","https://openalex.org/W4210960145","https://openalex.org/W4285506369","https://openalex.org/W4295137872","https://openalex.org/W4319300119","https://openalex.org/W4383108891","https://openalex.org/W4386952483","https://openalex.org/W4389819300","https://openalex.org/W4398188179","https://openalex.org/W4402660141","https://openalex.org/W4402715943","https://openalex.org/W4403510237"],"related_works":[],"abstract_inverted_index":{"Stand-alone":[0],"Visual":[1],"Place":[2],"Recognition":[3],"(VPR)":[4],"systems":[5,216],"have":[6],"little":[7],"defence":[8],"against":[9],"a":[10,77,92,107,118,124,156],"well-designed":[11],"adversarial":[12,33,200],"attack,":[13],"which":[14,82],"can":[15,112,135],"lead":[16],"to":[17,53,89,151],"disastrous":[18],"consequences":[19],"when":[20],"deployed":[21],"for":[22,85,202,212,217,224],"robot":[23],"navigation.":[24],"This":[25],"paper":[26],"extensively":[27],"analyzes":[28],"the":[29,55,70,86,96,102,129,187,191,194,210],"effect":[30],"of":[31,73,104,109,146,158,164,168,193],"two":[32,41],"attacks":[34,44],"common":[35],"in":[36,76,128,170,206,214],"other":[37],"perception":[38],"tasks":[39],"and":[40,64,141,149,174,220],"novel":[42,78],"VPR-specific":[43],"on":[45,182],"VPR":[46],"localization":[47,132],"performance.":[48],"We":[49,154],"then":[50],"propose":[51],"how":[52],"close":[54],"loop":[56],"between":[57],"VPR,":[58],"an":[59,171],"Adversarial":[60],"Attack":[61],"Detector":[62],"(AAD),":[63],"active":[65],"navigation":[66],"decisions":[67],"by":[68],"demonstrating":[69,117],"performance":[71,114],"benefit":[72],"simulated":[74],"AADs":[75,105,213],"experiment":[79,98],"paradigm":[80],"\u2013":[81,121,134],"we":[83,100,185],"detail":[84],"robotics":[87],"community":[88],"use":[90],"as":[91,123],"system":[93,225],"framework.":[94],"In":[95],"proposed":[97],"paradigm,":[99],"see":[101],"addition":[103],"across":[106],"range":[108],"detection":[110,144],"accuracies":[111],"improve":[113],"over":[115],"baseline;":[116],"significant":[119],"improvement":[120],"such":[122],"\u2248":[125],"50%":[126],"reduction":[127],"mean":[130],"along-track":[131],"error":[133],"be":[136],"achieved":[137],"with":[138],"True":[139],"Positive":[140,143],"False":[142],"rates":[145],"only":[147],"75%":[148],"up":[150],"25%":[152],"respectively.":[153],"examine":[155],"variety":[157],"metrics":[159],"including:":[160],"Along-Track":[161],"Error,":[162],"Percentage":[163,167],"Time":[165,169,177],"Attacked,":[166],"\u2018Unsafe\u2019":[172],"State,":[173],"Longest":[175],"Continuous":[176],"Under":[178],"Attack.":[179],"Expanding":[180],"further":[181],"these":[183],"results,":[184],"provide":[186],"first":[188],"investigation":[189],"into":[190],"efficacy":[192],"Fast":[195],"Gradient":[196],"Sign":[197],"Method":[198],"(FGSM)":[199],"attack":[201],"VPR.":[203],"The":[204],"analysis":[205],"this":[207],"work":[208],"highlights":[209],"need":[211],"real-world":[215],"trustworthy":[218],"navigation,":[219],"informs":[221],"quantitative":[222],"requirements":[223],"design.":[226]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-11-28T00:00:00"}
