{"id":"https://openalex.org/W3183870986","doi":"https://doi.org/10.1109/jiot.2021.3099164","title":"Evaluating Adversarial Attacks on Driving Safety in Vision-Based Autonomous Vehicles","display_name":"Evaluating Adversarial Attacks on Driving Safety in Vision-Based Autonomous Vehicles","publication_year":2021,"publication_date":"2021-07-26","ids":{"openalex":"https://openalex.org/W3183870986","doi":"https://doi.org/10.1109/jiot.2021.3099164","mag":"3183870986"},"language":"en","primary_location":{"id":"doi:10.1109/jiot.2021.3099164","is_oa":false,"landing_page_url":"https://doi.org/10.1109/jiot.2021.3099164","pdf_url":null,"source":{"id":"https://openalex.org/S2480266640","display_name":"IEEE Internet of Things Journal","issn_l":"2327-4662","issn":["2327-4662","2372-2541"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Internet of Things Journal","raw_type":"journal-article"},"type":"article","indexed_in":["arxiv","crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2108.02940","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":null,"display_name":"Jindi Zhang","orcid":"https://orcid.org/0000-0001-8774-0607"},"institutions":[{"id":"https://openalex.org/I168719708","display_name":"City University of Hong Kong","ror":"https://ror.org/03q8dnn23","country_code":"HK","type":"education","lineage":["https://openalex.org/I168719708"]}],"countries":["HK"],"is_corresponding":true,"raw_author_name":"Jindi Zhang","raw_affiliation_strings":["Department of Computer Science, City University of Hong Kong, Hong Kong"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, City University of Hong Kong, Hong Kong","institution_ids":["https://openalex.org/I168719708"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Yang Lou","orcid":null},"institutions":[{"id":"https://openalex.org/I168719708","display_name":"City University of Hong Kong","ror":"https://ror.org/03q8dnn23","country_code":"HK","type":"education","lineage":["https://openalex.org/I168719708"]}],"countries":["HK"],"is_corresponding":false,"raw_author_name":"Yang Lou","raw_affiliation_strings":["Department of Computer Science, City University of Hong Kong, Hong Kong"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, City University of Hong Kong, Hong Kong","institution_ids":["https://openalex.org/I168719708"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Jianping Wang","orcid":"https://orcid.org/0000-0002-9318-1482"},"institutions":[{"id":"https://openalex.org/I168719708","display_name":"City University of Hong Kong","ror":"https://ror.org/03q8dnn23","country_code":"HK","type":"education","lineage":["https://openalex.org/I168719708"]}],"countries":["HK"],"is_corresponding":false,"raw_author_name":"Jianping Wang","raw_affiliation_strings":["Department of Computer Science, City University of Hong Kong, Hong Kong"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, City University of Hong Kong, Hong Kong","institution_ids":["https://openalex.org/I168719708"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Kui Wu","orcid":"https://orcid.org/0000-0002-2069-0032"},"institutions":[{"id":"https://openalex.org/I212119943","display_name":"University of Victoria","ror":"https://ror.org/04s5mat29","country_code":"CA","type":"education","lineage":["https://openalex.org/I212119943"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Kui Wu","raw_affiliation_strings":["Department of Computer Science, University of Victoria, Victoria, Canada"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, University of Victoria, Victoria, Canada","institution_ids":["https://openalex.org/I212119943"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Kejie Lu","orcid":"https://orcid.org/0000-0002-6315-2031"},"institutions":[{"id":"https://openalex.org/I60388903","display_name":"University of Puerto Rico-Mayaguez","ror":"https://ror.org/00wek6x04","country_code":"PR","type":"education","lineage":["https://openalex.org/I200399037","https://openalex.org/I60388903"]}],"countries":["PR"],"is_corresponding":false,"raw_author_name":"Kejie Lu","raw_affiliation_strings":["Department of Computer Science and Engineering, University of Puerto Rico at Mayag&#x00FC;ez, Mayag&#x00FC;ez, PR, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science and Engineering, University of Puerto Rico at Mayag&#x00FC;ez, Mayag&#x00FC;ez, PR, USA","institution_ids":["https://openalex.org/I60388903"]}]},{"author_position":"last","author":{"id":null,"display_name":"Xiaohua Jia","orcid":"https://orcid.org/0000-0001-8702-8302"},"institutions":[{"id":"https://openalex.org/I168719708","display_name":"City University of Hong Kong","ror":"https://ror.org/03q8dnn23","country_code":"HK","type":"education","lineage":["https://openalex.org/I168719708"]}],"countries":["HK"],"is_corresponding":false,"raw_author_name":"Xiaohua Jia","raw_affiliation_strings":["Department of Computer Science, City University of Hong Kong, Hong Kong"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, City University of Hong Kong, Hong Kong","institution_ids":["https://openalex.org/I168719708"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":6,"corresponding_author_ids":[],"corresponding_institution_ids":["https://openalex.org/I168719708"],"apc_list":null,"apc_paid":null,"fwci":4.1988,"has_fulltext":false,"cited_by_count":50,"citation_normalized_percentile":{"value":0.95011435,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":94,"max":100},"biblio":{"volume":"9","issue":"5","first_page":"3443","last_page":"3456"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9951000213623047,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9951000213623047,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.001500000013038516,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11099","display_name":"Autonomous Vehicle Technology and Safety","score":0.00039999998989515007,"subfield":{"id":"https://openalex.org/subfields/2203","display_name":"Automotive Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8375999927520752},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.6789000034332275},{"id":"https://openalex.org/keywords/object-detection","display_name":"Object detection","score":0.5735999941825867},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.5630000233650208},{"id":"https://openalex.org/keywords/active-safety","display_name":"Active safety","score":0.42890000343322754},{"id":"https://openalex.org/keywords/perspective","display_name":"Perspective (graphical)","score":0.4106999933719635},{"id":"https://openalex.org/keywords/vehicle-dynamics","display_name":"Vehicle dynamics","score":0.3700999915599823},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.3179999887943268}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8375999927520752},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8021000027656555},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.6789000034332275},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6403999924659729},{"id":"https://openalex.org/C2776151529","wikidata":"https://www.wikidata.org/wiki/Q3045304","display_name":"Object detection","level":3,"score":0.5735999941825867},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.5630000233650208},{"id":"https://openalex.org/C127757376","wikidata":"https://www.wikidata.org/wiki/Q2056514","display_name":"Active safety","level":2,"score":0.42890000343322754},{"id":"https://openalex.org/C12713177","wikidata":"https://www.wikidata.org/wiki/Q1900281","display_name":"Perspective (graphical)","level":2,"score":0.4106999933719635},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.38370001316070557},{"id":"https://openalex.org/C79487989","wikidata":"https://www.wikidata.org/wiki/Q934680","display_name":"Vehicle dynamics","level":2,"score":0.3700999915599823},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3499000072479248},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.3179999887943268},{"id":"https://openalex.org/C2778403875","wikidata":"https://www.wikidata.org/wiki/Q20312394","display_name":"Adversarial machine learning","level":3,"score":0.31029999256134033},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.3066999912261963},{"id":"https://openalex.org/C87833898","wikidata":"https://www.wikidata.org/wiki/Q1060280","display_name":"Advanced driver assistance systems","level":2,"score":0.3041999936103821},{"id":"https://openalex.org/C2781238097","wikidata":"https://www.wikidata.org/wiki/Q175026","display_name":"Object (grammar)","level":2,"score":0.29179999232292175},{"id":"https://openalex.org/C175154964","wikidata":"https://www.wikidata.org/wiki/Q380077","display_name":"Task analysis","level":3,"score":0.28850001096725464},{"id":"https://openalex.org/C145424490","wikidata":"https://www.wikidata.org/wiki/Q618465","display_name":"Remotely operated underwater vehicle","level":4,"score":0.2840999960899353},{"id":"https://openalex.org/C2780864053","wikidata":"https://www.wikidata.org/wiki/Q5147495","display_name":"Collision avoidance","level":3,"score":0.28130000829696655},{"id":"https://openalex.org/C105339364","wikidata":"https://www.wikidata.org/wiki/Q2297740","display_name":"Software deployment","level":2,"score":0.2745000123977661},{"id":"https://openalex.org/C140547941","wikidata":"https://www.wikidata.org/wiki/Q7797194","display_name":"Threat model","level":2,"score":0.2694000005722046},{"id":"https://openalex.org/C526921623","wikidata":"https://www.wikidata.org/wiki/Q190117","display_name":"Automotive industry","level":2,"score":0.26579999923706055},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.26170000433921814},{"id":"https://openalex.org/C79403827","wikidata":"https://www.wikidata.org/wiki/Q3988","display_name":"Real-time computing","level":1,"score":0.2612000107765198}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/jiot.2021.3099164","is_oa":false,"landing_page_url":"https://doi.org/10.1109/jiot.2021.3099164","pdf_url":null,"source":{"id":"https://openalex.org/S2480266640","display_name":"IEEE Internet of Things Journal","issn_l":"2327-4662","issn":["2327-4662","2372-2541"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Internet of Things Journal","raw_type":"journal-article"},{"id":"pmh:oai:arXiv.org:2108.02940","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2108.02940","pdf_url":"https://arxiv.org/pdf/2108.02940","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2108.02940","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2108.02940","pdf_url":"https://arxiv.org/pdf/2108.02940","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1788112792","display_name":null,"funder_award_id":"NSFC/RGC N_CityU 140/20","funder_id":"https://openalex.org/F4320321592","funder_display_name":"Research Grants Council, University Grants Committee"}],"funders":[{"id":"https://openalex.org/F4320321592","display_name":"Research Grants Council, University Grants Committee","ror":"https://ror.org/00djwmt25"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":26,"referenced_works":["https://openalex.org/W1969483458","https://openalex.org/W1976010390","https://openalex.org/W2115579991","https://openalex.org/W2150066425","https://openalex.org/W2740508249","https://openalex.org/W2774644650","https://openalex.org/W2798302089","https://openalex.org/W2890883923","https://openalex.org/W2949789602","https://openalex.org/W2954174912","https://openalex.org/W2959364614","https://openalex.org/W2962807143","https://openalex.org/W2963118571","https://openalex.org/W2963178695","https://openalex.org/W2963542245","https://openalex.org/W2963809933","https://openalex.org/W2983371255","https://openalex.org/W2986305485","https://openalex.org/W3034407526","https://openalex.org/W3090608524","https://openalex.org/W4293846201","https://openalex.org/W6605295560","https://openalex.org/W6637162671","https://openalex.org/W6640425456","https://openalex.org/W6745935785","https://openalex.org/W6766301176"],"related_works":[],"abstract_inverted_index":{"In":[0,88,124,212],"recent":[1,31],"years,":[2],"many":[3],"deep":[4,47,75,121,245],"learning":[5,76,122,246],"models":[6,18,77,130,247],"have":[7,33],"been":[8],"adopted":[9],"in":[10,43,131,248],"autonomous":[11,28,61,83,113,181,249],"driving.":[12,250],"At":[13],"the":[14,25,57,69,72,79,93,108,117,162,173,177,184,188,198,208,217,220,242],"same":[15],"time,":[16],"these":[17],"introduce":[19],"new":[20,234],"vulnerabilities":[21],"that":[22,35],"may":[23],"compromise":[24],"safety":[26,55,81,110,157,179],"of":[27,46,74,82,95,99,111,120,155,164,180,190,229,244],"vehicles.":[29],"Specifically,":[30],"studies":[32],"demonstrated":[34],"adversarial":[36,86,100,205,238],"attacks":[37,206,239],"can":[38],"cause":[39],"a":[40,153,233],"significant":[41],"decline":[42],"detection":[44,51,118],"precision":[45,119,189],"learning-based":[48],"3-D":[49,133,191],"object":[50,134,192],"models.":[52,123],"Although":[53],"driving":[54,80,109,144,156,178],"is":[56,64],"ultimate":[58],"concern":[59],"for":[60],"driving,":[62],"there":[63],"no":[65],"comprehensive":[66],"study":[67],"on":[68,107,176,187],"linkage":[70],"between":[71],"performance":[73,158],"and":[78,104,139,183,196,240],"vehicles":[84,114,182],"under":[85],"attacks.":[87],"this":[89,230],"article,":[90],"we":[91,126,146,169,214],"investigate":[92,216],"impact":[94,175,186],"two":[96,128,221],"primary":[97],"types":[98],"attacks,":[101,103,106],"perturbation":[102],"patch":[105],"vision-based":[112,132],"rather":[115],"than":[116,207],"particular,":[125],"consider":[127],"state-of-the-art":[129],"detection:":[135],"1)":[136,172],"Stereo":[137,209],"R-CNN":[138,210],"2)":[140,197],"DSGN.":[141],"To":[142],"evaluate":[143,237],"safety,":[145],"propose":[147],"an":[148,224],"end-to-end":[149],"evaluation":[150,167],"framework":[151],"with":[152,223],"set":[154],"metrics.":[159],"By":[160],"analyzing":[161],"results":[163],"our":[165],"extensive":[166],"experiments,":[168],"find":[170],"that:":[171],"attack\u2019s":[174,185],"detectors":[193],"are":[194],"decoupled":[195],"DSGN":[199],"model":[200],"demonstrates":[201],"stronger":[202],"robustness":[203],"to":[204,236],"model.":[211],"addition,":[213],"further":[215],"causes":[218],"behind":[219],"findings":[222,228],"ablation":[225],"study.":[226],"The":[227],"article":[231],"provide":[232],"perspective":[235],"guide":[241],"selection":[243]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":18},{"year":2024,"cited_by_count":17},{"year":2023,"cited_by_count":11},{"year":2022,"cited_by_count":2}],"updated_date":"2026-04-09T08:11:56.329763","created_date":"2021-08-02T00:00:00"}
