{"id":"https://openalex.org/W4404700041","doi":"https://doi.org/10.1145/3705611","title":"Safe Driving Adversarial Trajectory Can Mislead: Toward More Stealthy Adversarial Attack Against Autonomous Driving Prediction Module","display_name":"Safe Driving Adversarial Trajectory Can Mislead: Toward More Stealthy Adversarial Attack Against Autonomous Driving Prediction Module","publication_year":2024,"publication_date":"2024-11-25","ids":{"openalex":"https://openalex.org/W4404700041","doi":"https://doi.org/10.1145/3705611"},"language":"en","primary_location":{"id":"doi:10.1145/3705611","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3705611","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3705611","source":{"id":"https://openalex.org/S4210174050","display_name":"ACM Transactions on Privacy and Security","issn_l":"2471-2566","issn":["2471-2566","2471-2574"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Privacy and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"bronze","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3705611","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5111279850","display_name":"Yingkai Dong","orcid":"https://orcid.org/0009-0001-6245-1240"},"institutions":[{"id":"https://openalex.org/I80143920","display_name":"Shandong University of Science and Technology","ror":"https://ror.org/04gtjhw98","country_code":"CN","type":"education","lineage":["https://openalex.org/I80143920"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Yingkai Dong","raw_affiliation_strings":["School of Cyber Science and Technology, Shandong University, Qingdao, China","School of cyber science and technology, Shandong University, Qingdao, China"],"affiliations":[{"raw_affiliation_string":"School of Cyber Science and Technology, Shandong University, Qingdao, China","institution_ids":["https://openalex.org/I80143920"]},{"raw_affiliation_string":"School of cyber science and technology, Shandong University, Qingdao, China","institution_ids":["https://openalex.org/I80143920"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5107209325","display_name":"Li Wang","orcid":"https://orcid.org/0000-0003-1289-5457"},"institutions":[{"id":"https://openalex.org/I80143920","display_name":"Shandong University of Science and Technology","ror":"https://ror.org/04gtjhw98","country_code":"CN","type":"education","lineage":["https://openalex.org/I80143920"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Li Wang","raw_affiliation_strings":["School of Cyber Science and Technology, Shandong University, Qingdao, China","School of cyber science and technology, Shandong University, Qingdao, China"],"affiliations":[{"raw_affiliation_string":"School of Cyber Science and Technology, Shandong University, Qingdao, China","institution_ids":["https://openalex.org/I80143920"]},{"raw_affiliation_string":"School of cyber science and technology, Shandong University, Qingdao, China","institution_ids":["https://openalex.org/I80143920"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101809231","display_name":"Zheng Li","orcid":"https://orcid.org/0000-0002-4466-7523"},"institutions":[{"id":"https://openalex.org/I4210128801","display_name":"Helmholtz Center for Information Security","ror":"https://ror.org/02njgxr09","country_code":"DE","type":"facility","lineage":["https://openalex.org/I1305996414","https://openalex.org/I4210128801"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Zheng Li","raw_affiliation_strings":["CISPA Helmholtz Center for Information Security, Saarbrucken, Germany"],"affiliations":[{"raw_affiliation_string":"CISPA Helmholtz Center for Information Security, Saarbrucken, Germany","institution_ids":["https://openalex.org/I4210128801"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5113713546","display_name":"Hao Li","orcid":"https://orcid.org/0000-0002-0558-6245"},"institutions":[{"id":"https://openalex.org/I80143920","display_name":"Shandong University of Science and Technology","ror":"https://ror.org/04gtjhw98","country_code":"CN","type":"education","lineage":["https://openalex.org/I80143920"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hao Li","raw_affiliation_strings":["School of Cyber Science and Technology, Shandong University, Qingdao, China"],"affiliations":[{"raw_affiliation_string":"School of Cyber Science and Technology, Shandong University, Qingdao, China","institution_ids":["https://openalex.org/I80143920"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102841330","display_name":"Peng Tang","orcid":"https://orcid.org/0000-0003-1304-8401"},"institutions":[{"id":"https://openalex.org/I80143920","display_name":"Shandong University of Science and Technology","ror":"https://ror.org/04gtjhw98","country_code":"CN","type":"education","lineage":["https://openalex.org/I80143920"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Peng Tang","raw_affiliation_strings":["School of Cyber Science and Technology, Shandong University, Qingdao, China"],"affiliations":[{"raw_affiliation_string":"School of Cyber Science and Technology, Shandong University, Qingdao, China","institution_ids":["https://openalex.org/I80143920"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101497038","display_name":"Chengyu Hu","orcid":"https://orcid.org/0000-0002-5523-2672"},"institutions":[{"id":"https://openalex.org/I80143920","display_name":"Shandong University of Science and Technology","ror":"https://ror.org/04gtjhw98","country_code":"CN","type":"education","lineage":["https://openalex.org/I80143920"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chengyu Hu","raw_affiliation_strings":["School of Cyber Science and Technology, Shandong University, Qingdao, China","School of cyber science and technology, Shandong University, Qingdao, China"],"affiliations":[{"raw_affiliation_string":"School of Cyber Science and Technology, Shandong University, Qingdao, China","institution_ids":["https://openalex.org/I80143920"]},{"raw_affiliation_string":"School of cyber science and technology, Shandong University, Qingdao, China","institution_ids":["https://openalex.org/I80143920"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5084460856","display_name":"Shanqing Guo","orcid":"https://orcid.org/0000-0003-3367-0951"},"institutions":[{"id":"https://openalex.org/I80143920","display_name":"Shandong University of Science and Technology","ror":"https://ror.org/04gtjhw98","country_code":"CN","type":"education","lineage":["https://openalex.org/I80143920"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Shanqing Guo","raw_affiliation_strings":["School of Cyber Science and Technology, Shandong University, Qingdao, China"],"affiliations":[{"raw_affiliation_string":"School of Cyber Science and Technology, Shandong University, Qingdao, China","institution_ids":["https://openalex.org/I80143920"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5111279850"],"corresponding_institution_ids":["https://openalex.org/I80143920"],"apc_list":null,"apc_paid":null,"fwci":2.1264,"has_fulltext":false,"cited_by_count":6,"citation_normalized_percentile":{"value":0.89489907,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":96,"max":100},"biblio":{"volume":"28","issue":"2","first_page":"1","last_page":"28"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9987000226974487,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9987000226974487,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11099","display_name":"Autonomous Vehicle Technology and Safety","score":0.9818999767303467,"subfield":{"id":"https://openalex.org/subfields/2203","display_name":"Automotive Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10800","display_name":"Forensic Toxicology and Drug Analysis","score":0.9613999724388123,"subfield":{"id":"https://openalex.org/subfields/3005","display_name":"Toxicology"},"field":{"id":"https://openalex.org/fields/30","display_name":"Pharmacology, Toxicology and Pharmaceutics"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7581876516342163},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6750677824020386},{"id":"https://openalex.org/keywords/realizability","display_name":"Realizability","score":0.6685070991516113},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.6663863062858582},{"id":"https://openalex.org/keywords/trajectory","display_name":"Trajectory","score":0.575299084186554},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.45377475023269653},{"id":"https://openalex.org/keywords/trajectory-optimization","display_name":"Trajectory optimization","score":0.4355561435222626},{"id":"https://openalex.org/keywords/anomaly-detection","display_name":"Anomaly detection","score":0.4140304923057556},{"id":"https://openalex.org/keywords/mathematical-optimization","display_name":"Mathematical optimization","score":0.35078269243240356},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.18543311953544617},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.1207556426525116}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7581876516342163},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6750677824020386},{"id":"https://openalex.org/C2776378722","wikidata":"https://www.wikidata.org/wiki/Q3454417","display_name":"Realizability","level":2,"score":0.6685070991516113},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.6663863062858582},{"id":"https://openalex.org/C13662910","wikidata":"https://www.wikidata.org/wiki/Q193139","display_name":"Trajectory","level":2,"score":0.575299084186554},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.45377475023269653},{"id":"https://openalex.org/C173246807","wikidata":"https://www.wikidata.org/wiki/Q7833062","display_name":"Trajectory optimization","level":3,"score":0.4355561435222626},{"id":"https://openalex.org/C739882","wikidata":"https://www.wikidata.org/wiki/Q3560506","display_name":"Anomaly detection","level":2,"score":0.4140304923057556},{"id":"https://openalex.org/C126255220","wikidata":"https://www.wikidata.org/wiki/Q141495","display_name":"Mathematical optimization","level":1,"score":0.35078269243240356},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.18543311953544617},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.1207556426525116},{"id":"https://openalex.org/C1276947","wikidata":"https://www.wikidata.org/wiki/Q333","display_name":"Astronomy","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3705611","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3705611","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3705611","source":{"id":"https://openalex.org/S4210174050","display_name":"ACM Transactions on Privacy and Security","issn_l":"2471-2566","issn":["2471-2566","2471-2574"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Privacy and Security","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.1145/3705611","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3705611","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3705611","source":{"id":"https://openalex.org/S4210174050","display_name":"ACM Transactions on Privacy and Security","issn_l":"2471-2566","issn":["2471-2566","2471-2574"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Privacy and Security","raw_type":"journal-article"},"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.5699999928474426}],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":false},"content_urls":{"pdf":"https://content.openalex.org/works/W4404700041.pdf"},"referenced_works_count":51,"referenced_works":["https://openalex.org/W171869169","https://openalex.org/W569478347","https://openalex.org/W573768661","https://openalex.org/W1971918058","https://openalex.org/W1999824319","https://openalex.org/W2017170637","https://openalex.org/W2041600899","https://openalex.org/W2107338474","https://openalex.org/W2151666054","https://openalex.org/W2180612164","https://openalex.org/W2243397390","https://openalex.org/W2616028256","https://openalex.org/W2782393959","https://openalex.org/W2905385096","https://openalex.org/W2952402617","https://openalex.org/W2955189650","https://openalex.org/W2959364614","https://openalex.org/W2963327228","https://openalex.org/W2963759562","https://openalex.org/W2963857521","https://openalex.org/W2965660219","https://openalex.org/W2967177252","https://openalex.org/W2984260944","https://openalex.org/W2995649812","https://openalex.org/W3026525412","https://openalex.org/W3034722190","https://openalex.org/W3035574168","https://openalex.org/W3037376004","https://openalex.org/W3054438628","https://openalex.org/W3098394944","https://openalex.org/W3098881644","https://openalex.org/W3101000982","https://openalex.org/W3116651890","https://openalex.org/W3127025836","https://openalex.org/W3137766544","https://openalex.org/W3156877806","https://openalex.org/W3166932403","https://openalex.org/W3195924537","https://openalex.org/W3204385750","https://openalex.org/W3205464992","https://openalex.org/W4210620228","https://openalex.org/W4221156702","https://openalex.org/W4252370303","https://openalex.org/W4286696412","https://openalex.org/W4292787455","https://openalex.org/W4312730708","https://openalex.org/W4312731878","https://openalex.org/W4388491638","https://openalex.org/W4389140876","https://openalex.org/W4389667627","https://openalex.org/W4390873680"],"related_works":["https://openalex.org/W4385832323","https://openalex.org/W4244391535","https://openalex.org/W2356996864","https://openalex.org/W2904060783","https://openalex.org/W2015393961","https://openalex.org/W2378339670","https://openalex.org/W2359353485","https://openalex.org/W2361427670","https://openalex.org/W2139910871","https://openalex.org/W2119925415"],"abstract_inverted_index":{"The":[0],"prediction":[1,24,45,85,129,185],"module,":[2],"powered":[3],"by":[4,69],"deep":[5],"learning":[6],"models,":[7,186],"constitutes":[8],"a":[9,93,112,118,204],"fundamental":[10],"component":[11],"of":[12,21,43,83,162],"high-level":[13],"Autonomous":[14],"Vehicles":[15],"(AVs).":[16],"Given":[17],"the":[18,22,40,44,81,84,104,160,211],"direct":[19],"influence":[20],"module\u2019s":[23],"accuracy":[25],"on":[26,126],"AV":[27],"driving":[28,59],"behavior,":[29],"ensuring":[30],"its":[31,193],"security":[32],"is":[33,141,173],"paramount.":[34],"However,":[35],"limited":[36],"studies":[37],"have":[38],"explored":[39],"adversarial":[41,52,163,212],"robustness":[42,82],"modules.":[46,86],"Furthermore,":[47],"existing":[48],"methods":[49],"still":[50],"generate":[51],"trajectories":[53,164],"that":[54,138,210],"deviate":[55],"significantly":[56,158],"from":[57,179],"human":[58],"behavior.":[60],"These":[61,207],"deviations":[62],"can":[63],"be":[64],"easily":[65],"identified":[66],"as":[67],"hazardous":[68],"AVs\u2019":[70],"anomaly":[71],"detection":[72],"models":[73,130],"and":[74,79,95,110,131,187],"thus":[75],"cannot":[76],"effectively":[77],"evaluate":[78],"reflect":[80],"To":[87],"bridge":[88],"this":[89],"gap,":[90],"we":[91,102,198,214],"propose":[92],"stealthy":[94],"more":[96],"effective":[97],"optimization-based":[98],"attack":[99,140,147,156,172],"method.":[100],"Specifically,":[101],"reformulate":[103],"optimization":[105],"problem":[106],"using":[107,203],"Lagrangian":[108],"relaxation":[109],"design":[111],"Frenet-based":[113],"objective":[114],"function":[115],"along":[116],"with":[117,144],"distinct":[119],"constraint":[120],"space.":[121],"We":[122],"conduct":[123,199],"extensive":[124],"evaluations":[125,202],"2":[127,132],"popular":[128],"benchmark":[133],"datasets.":[134],"Our":[135,171],"results":[136],"show":[137],"our":[139,155],"highly":[142],"effective,":[143],"over":[145],"87%":[146],"success":[148],"rates,":[149],"outperforming":[150],"all":[151],"baseline":[152],"attacks.":[153],"Moreover,":[154],"method":[157],"improves":[159],"stealthiness":[161],"while":[165],"guaranteeing":[166],"adherence":[167],"to":[168,177,191,222],"physical":[169],"constraints.":[170],"also":[174],"found":[175],"robust":[176],"noise":[178],"upstream":[180],"modules,":[181],"transferable":[182],"across":[183],"trajectory":[184,213],"high":[188],"realizability.":[189],"Lastly,":[190],"verify":[192],"effectiveness":[194],"in":[195],"real-world":[196],"applications,":[197],"further":[200],"simulation":[201],"production-grade":[205],"simulator.":[206],"simulations":[208],"reveal":[209],"created":[215],"could":[216],"convincingly":[217],"induce":[218],"autonomous":[219],"vehicles":[220],"(AVs)":[221],"initiate":[223],"hard":[224],"braking.":[225]},"counts_by_year":[{"year":2026,"cited_by_count":3},{"year":2025,"cited_by_count":3}],"updated_date":"2026-03-20T23:20:44.827607","created_date":"2024-11-26T00:00:00"}
