{"id":"https://openalex.org/W4417201536","doi":"https://doi.org/10.1109/tcsvt.2025.3642704","title":"RPA: Recursive Perturbation-Based Universal Adversarial Attacks on Multimodal Generative Tasks","display_name":"RPA: Recursive Perturbation-Based Universal Adversarial Attacks on Multimodal Generative Tasks","publication_year":2025,"publication_date":"2025-12-10","ids":{"openalex":"https://openalex.org/W4417201536","doi":"https://doi.org/10.1109/tcsvt.2025.3642704"},"language":null,"primary_location":{"id":"doi:10.1109/tcsvt.2025.3642704","is_oa":true,"landing_page_url":"https://doi.org/10.1109/tcsvt.2025.3642704","pdf_url":null,"source":{"id":"https://openalex.org/S115173108","display_name":"IEEE Transactions on Circuits and Systems for Video Technology","issn_l":"1051-8215","issn":["1051-8215","1558-2205"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Circuits and Systems for Video Technology","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://doi.org/10.1109/tcsvt.2025.3642704","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5057867117","display_name":"Yaguan Qian","orcid":"https://orcid.org/0000-0003-4056-9755"},"institutions":[{"id":"https://openalex.org/I168879160","display_name":"Zhejiang University of Science and Technology","ror":"https://ror.org/05mx0wr29","country_code":"CN","type":"education","lineage":["https://openalex.org/I168879160"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yaguan Qian","raw_affiliation_strings":["School of Artificial Intelligence and Information Engineering, Zhejiang University of Science and Technology, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0003-4056-9755","affiliations":[{"raw_affiliation_string":"School of Artificial Intelligence and Information Engineering, Zhejiang University of Science and Technology, Hangzhou, China","institution_ids":["https://openalex.org/I168879160"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100341614","display_name":"Zhihao Chen","orcid":"https://orcid.org/0009-0002-7821-1505"},"institutions":[{"id":"https://openalex.org/I168879160","display_name":"Zhejiang University of Science and Technology","ror":"https://ror.org/05mx0wr29","country_code":"CN","type":"education","lineage":["https://openalex.org/I168879160"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhihao Chen","raw_affiliation_strings":["School of Artificial Intelligence and Information Engineering, Zhejiang University of Science and Technology, Hangzhou, China"],"raw_orcid":"https://orcid.org/0009-0008-8797-1059","affiliations":[{"raw_affiliation_string":"School of Artificial Intelligence and Information Engineering, Zhejiang University of Science and Technology, Hangzhou, China","institution_ids":["https://openalex.org/I168879160"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5015026287","display_name":"Qiqi Bao","orcid":"https://orcid.org/0009-0004-1703-6090"},"institutions":[{"id":"https://openalex.org/I168879160","display_name":"Zhejiang University of Science and Technology","ror":"https://ror.org/05mx0wr29","country_code":"CN","type":"education","lineage":["https://openalex.org/I168879160"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Qiqi Bao","raw_affiliation_strings":["School of Artificial Intelligence and Information Engineering, Zhejiang University of Science and Technology, Hangzhou, China"],"raw_orcid":"https://orcid.org/0009-0004-1703-6090","affiliations":[{"raw_affiliation_string":"School of Artificial Intelligence and Information Engineering, Zhejiang University of Science and Technology, Hangzhou, China","institution_ids":["https://openalex.org/I168879160"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5002834666","display_name":"Chang Zong","orcid":"https://orcid.org/0000-0001-7757-0659"},"institutions":[{"id":"https://openalex.org/I168879160","display_name":"Zhejiang University of Science and Technology","ror":"https://ror.org/05mx0wr29","country_code":"CN","type":"education","lineage":["https://openalex.org/I168879160"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chang Zong","raw_affiliation_strings":["School of Information and Electronic Engineering and Technology, Zhejiang University of Science and Technology, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0001-7757-0659","affiliations":[{"raw_affiliation_string":"School of Information and Electronic Engineering and Technology, Zhejiang University of Science and Technology, Hangzhou, China","institution_ids":["https://openalex.org/I168879160"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5103244124","display_name":"Fei Yu","orcid":"https://orcid.org/0000-0001-8970-6269"},"institutions":[{"id":"https://openalex.org/I114117164","display_name":"University of Science and Technology Liaoning","ror":"https://ror.org/03grx7119","country_code":"CN","type":"education","lineage":["https://openalex.org/I114117164"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Fei Yu","raw_affiliation_strings":["School of Information and Electronic Engineering, Liaoning University of Technology, Anshan, China"],"raw_orcid":"https://orcid.org/0000-0001-8970-6269","affiliations":[{"raw_affiliation_string":"School of Information and Electronic Engineering, Liaoning University of Technology, Anshan, China","institution_ids":["https://openalex.org/I114117164"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5058611515","display_name":"Shouling Ji","orcid":"https://orcid.org/0000-0003-4268-372X"},"institutions":[{"id":"https://openalex.org/I168879160","display_name":"Zhejiang University of Science and Technology","ror":"https://ror.org/05mx0wr29","country_code":"CN","type":"education","lineage":["https://openalex.org/I168879160"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Shouling Ji","raw_affiliation_strings":["College of Computer Science and Technology, Zhejiang University, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0003-4268-372X","affiliations":[{"raw_affiliation_string":"College of Computer Science and Technology, Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I168879160"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5106482064","display_name":"Bin Wang","orcid":"https://orcid.org/0009-0001-0883-9594"},"institutions":[{"id":"https://openalex.org/I4210123185","display_name":"Zhejiang Lab","ror":"https://ror.org/02m2h7991","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210123185"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Bin Wang","raw_affiliation_strings":["Zhejiang Key Laboratory of Artificial Intelligence of Things (AIoT) Network and Data Security, Hangzhou, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Zhejiang Key Laboratory of Artificial Intelligence of Things (AIoT) Network and Data Security, Hangzhou, China","institution_ids":["https://openalex.org/I4210123185"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5070856186","display_name":"Zhaoquan Gu","orcid":"https://orcid.org/0000-0001-7546-852X"},"institutions":[{"id":"https://openalex.org/I158809036","display_name":"Shenzhen Institute of Information Technology","ror":"https://ror.org/03wrf9427","country_code":"CN","type":"education","lineage":["https://openalex.org/I158809036"]},{"id":"https://openalex.org/I204983213","display_name":"Harbin Institute of Technology","ror":"https://ror.org/01yqg2h08","country_code":"CN","type":"education","lineage":["https://openalex.org/I204983213"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhaoquan Gu","raw_affiliation_strings":["School of Computer Science and Technology, Harbin Institute of Technology, Shenzhen, China","School of Computer Science and Technology, Harbin Institute of Technology (Shenzhen), Shenzhen, China"],"raw_orcid":"https://orcid.org/0000-0001-7546-852X","affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Harbin Institute of Technology, Shenzhen, China","institution_ids":["https://openalex.org/I204983213"]},{"raw_affiliation_string":"School of Computer Science and Technology, Harbin Institute of Technology (Shenzhen), Shenzhen, China","institution_ids":["https://openalex.org/I158809036","https://openalex.org/I204983213"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5109299788","display_name":"Zhen Lei","orcid":"https://orcid.org/0000-0002-0791-189X"},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210094879","display_name":"Shandong Institute of Automation","ror":"https://ror.org/00qdtba35","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210094879","https://openalex.org/I4210142748"]},{"id":"https://openalex.org/I4210112150","display_name":"Institute of Automation","ror":"https://ror.org/022c3hy66","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210112150"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhen Lei","raw_affiliation_strings":["Center for Biometrics and Security Research, National Laboratory of Pattern Recognition, Institute of Automation, Chinese Academy of Sciences, Beijing, China","Institute of Automation, Center for Biometrics and Security Research and National Laboratory of Pattern Recognition, Chinese Academy of Sciences, 95 Zhongguancun Donglu, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0002-0791-189X","affiliations":[{"raw_affiliation_string":"Center for Biometrics and Security Research, National Laboratory of Pattern Recognition, Institute of Automation, Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210094879","https://openalex.org/I19820366"]},{"raw_affiliation_string":"Institute of Automation, Center for Biometrics and Security Research and National Laboratory of Pattern Recognition, Chinese Academy of Sciences, 95 Zhongguancun Donglu, Beijing, China","institution_ids":["https://openalex.org/I4210094879","https://openalex.org/I4210112150"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":9,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.18732356,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"36","issue":"5","first_page":"6258","last_page":"6272"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.5307999849319458,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.5307999849319458,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11714","display_name":"Multimodal Machine Learning Applications","score":0.19939999282360077,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10775","display_name":"Generative Adversarial Networks and Image Synthesis","score":0.06499999761581421,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7555000185966492},{"id":"https://openalex.org/keywords/transferability","display_name":"Transferability","score":0.6953999996185303},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.5852000117301941},{"id":"https://openalex.org/keywords/security-token","display_name":"Security token","score":0.4934999942779541},{"id":"https://openalex.org/keywords/computation","display_name":"Computation","score":0.4203000068664551},{"id":"https://openalex.org/keywords/generative-grammar","display_name":"Generative grammar","score":0.37929999828338623},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.33399999141693115}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8252999782562256},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7555000185966492},{"id":"https://openalex.org/C61272859","wikidata":"https://www.wikidata.org/wiki/Q7834031","display_name":"Transferability","level":3,"score":0.6953999996185303},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.5852000117301941},{"id":"https://openalex.org/C48145219","wikidata":"https://www.wikidata.org/wiki/Q1335365","display_name":"Security token","level":2,"score":0.4934999942779541},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.46860000491142273},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.43529999256134033},{"id":"https://openalex.org/C45374587","wikidata":"https://www.wikidata.org/wiki/Q12525525","display_name":"Computation","level":2,"score":0.4203000068664551},{"id":"https://openalex.org/C39890363","wikidata":"https://www.wikidata.org/wiki/Q36108","display_name":"Generative grammar","level":2,"score":0.37929999828338623},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.34790000319480896},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.33399999141693115},{"id":"https://openalex.org/C2776401178","wikidata":"https://www.wikidata.org/wiki/Q12050496","display_name":"Feature (linguistics)","level":2,"score":0.3328999876976013},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.3188000023365021},{"id":"https://openalex.org/C179799912","wikidata":"https://www.wikidata.org/wiki/Q205084","display_name":"Computational complexity theory","level":2,"score":0.29589998722076416},{"id":"https://openalex.org/C48044578","wikidata":"https://www.wikidata.org/wiki/Q727490","display_name":"Scalability","level":2,"score":0.2597000002861023},{"id":"https://openalex.org/C65856478","wikidata":"https://www.wikidata.org/wiki/Q3991682","display_name":"Attack model","level":2,"score":0.2590000033378601},{"id":"https://openalex.org/C86251818","wikidata":"https://www.wikidata.org/wiki/Q816754","display_name":"Benchmarking","level":2,"score":0.2540999948978424},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.2533999979496002}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tcsvt.2025.3642704","is_oa":true,"landing_page_url":"https://doi.org/10.1109/tcsvt.2025.3642704","pdf_url":null,"source":{"id":"https://openalex.org/S115173108","display_name":"IEEE Transactions on Circuits and Systems for Video Technology","issn_l":"1051-8215","issn":["1051-8215","1558-2205"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Circuits and Systems for Video Technology","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.1109/tcsvt.2025.3642704","is_oa":true,"landing_page_url":"https://doi.org/10.1109/tcsvt.2025.3642704","pdf_url":null,"source":{"id":"https://openalex.org/S115173108","display_name":"IEEE Transactions on Circuits and Systems for Video Technology","issn_l":"1051-8215","issn":["1051-8215","1558-2205"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Circuits and Systems for Video Technology","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2902468357","display_name":null,"funder_award_id":"62372137","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3550020321","display_name":null,"funder_award_id":"U21A20463","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G4930386054","display_name":null,"funder_award_id":"62472335","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6047521378","display_name":null,"funder_award_id":"62476250","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6475258168","display_name":null,"funder_award_id":"62506339","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Current":[0],"adversarial":[1,26,47],"attacks":[2,27],"pose":[3],"a":[4,82,94,129],"serious":[5],"threat":[6],"to":[7,105,140,157],"the":[8,77,114,117,122,125,175],"robustness":[9],"of":[10,116,124,177],"visual-language":[11],"models":[12,17,23],"(VLMs),":[13],"including":[14],"vision-language":[15],"pre-trained":[16],"(VLPMs)":[18],"and":[19,30,41,67,90,101,112,137,145,171],"multimodal":[20,168],"large":[21],"language":[22],"(MLLMs).":[24],"Traditional":[25],"are":[28],"example-specific":[29],"rely":[31],"on":[32],"specific":[33],"datasets.":[34],"This":[35,161],"practice":[36],"suffers":[37],"from":[38],"low":[39],"transferability":[40,66,115],"additional":[42],"computation":[43],"cost,":[44],"while":[45],"universal":[46],"perturbations":[48,96],"(UAPs)":[49],"offer":[50],"example-agnostic":[51],"solutions":[52],"by":[53],"generalizing":[54],"across":[55],"inputs.":[56],"However,":[57],"current":[58],"UAP":[59,85,159],"methods":[60,104],"mainly":[61],"target":[62],"VLPMs,":[63],"demonstrating":[64],"limited":[65],"effectiveness":[68,123],"in":[69,167],"MLLMs.":[70,91],"To":[71,119],"bridge":[72],"this":[73],"gap,":[74],"we":[75],"propose":[76],"Recursive":[78],"Perturbation":[79],"Attack":[80],"(RPA),":[81],"novel":[83],"black-box":[84],"method":[86],"for":[87],"both":[88],"VLPMs":[89],"RPA":[92,127,151],"employs":[93],"recursive":[95],"strategy,":[97,133],"utilizing":[98],"token":[99],"filtering":[100],"polynomial":[102],"sampling":[103],"generate":[106],"perturbations,":[107],"thereby":[108],"achieving":[109],"incremental":[110],"disruption":[111],"enhancing":[113],"attack.":[118],"further":[120],"enhance":[121],"attack,":[126],"integrates":[128],"three-tier":[130],"modality":[131],"decoupling":[132],"disentangling":[134],"intra-modal,":[135],"cross-modal,":[136],"fusion-modal":[138],"features":[139],"effectively":[141],"disrupt":[142],"feature":[143],"alignment":[144],"interactions.":[146],"Extensive":[147],"experiments":[148],"validate":[149],"that":[150],"achieves":[152],"superior":[153],"attack":[154],"performance":[155],"compared":[156],"existing":[158],"approaches.":[160],"work":[162],"highlights":[163],"new":[164],"security":[165],"concerns":[166],"AI":[169],"systems":[170],"provides":[172],"insights":[173],"into":[174],"design":[176],"more":[178],"robust":[179],"models.":[180],"Code":[181],"is":[182],"available":[183],"at":[184],"https://github.com/chilljudaoren/RPAttack.":[185]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-12-10T00:00:00"}
