{"id":"https://openalex.org/W7138447065","doi":"https://doi.org/10.1609/aaai.v40i16.38320","title":"Cheating Stereo Matching in Full-Scale: Physical Adversarial Attack Against Binocular Depth Estimation in Autonomous Driving","display_name":"Cheating Stereo Matching in Full-Scale: Physical Adversarial Attack Against Binocular Depth Estimation in Autonomous Driving","publication_year":2026,"publication_date":"2026-03-14","ids":{"openalex":"https://openalex.org/W7138447065","doi":"https://doi.org/10.1609/aaai.v40i16.38320"},"language":null,"primary_location":{"id":"doi:10.1609/aaai.v40i16.38320","is_oa":true,"landing_page_url":"https://doi.org/10.1609/aaai.v40i16.38320","pdf_url":null,"source":{"id":"https://openalex.org/S4210191458","display_name":"Proceedings of the AAAI Conference on Artificial Intelligence","issn_l":"2159-5399","issn":["2159-5399","2374-3468"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310320058","host_organization_name":"Association for the Advancement of Artificial Intelligence","host_organization_lineage":["https://openalex.org/P4310320058"],"host_organization_lineage_names":["Association for the Advancement of Artificial Intelligence"],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the AAAI Conference on Artificial Intelligence","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"diamond","oa_url":"https://doi.org/10.1609/aaai.v40i16.38320","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5089482468","display_name":"Kangqiao Zhao","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Kangqiao Zhao","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5129689483","display_name":"Shuo Huai","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Shuo Huai","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5129670589","display_name":"Xurui Song","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Xurui Song","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5129647722","display_name":"Jun Luo","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Jun Luo","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.56362773,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"40","issue":"16","first_page":"13190","last_page":"13198"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9959999918937683,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9959999918937683,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11105","display_name":"Advanced Image Processing Techniques","score":0.0008999999845400453,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10775","display_name":"Generative Adversarial Networks and Image Synthesis","score":0.0007999999797903001,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7459999918937683},{"id":"https://openalex.org/keywords/monocular","display_name":"Monocular","score":0.7035999894142151},{"id":"https://openalex.org/keywords/camouflage","display_name":"Camouflage","score":0.6877999901771545},{"id":"https://openalex.org/keywords/leverage","display_name":"Leverage (statistics)","score":0.552299976348877},{"id":"https://openalex.org/keywords/rendering","display_name":"Rendering (computer graphics)","score":0.5198000073432922},{"id":"https://openalex.org/keywords/matching","display_name":"Matching (statistics)","score":0.4357999861240387},{"id":"https://openalex.org/keywords/stereopsis","display_name":"Stereopsis","score":0.42410001158714294},{"id":"https://openalex.org/keywords/context","display_name":"Context (archaeology)","score":0.39910000562667847},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.39500001072883606}],"concepts":[{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.765500009059906},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7459999918937683},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7343999743461609},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.704200029373169},{"id":"https://openalex.org/C65909025","wikidata":"https://www.wikidata.org/wiki/Q1945033","display_name":"Monocular","level":2,"score":0.7035999894142151},{"id":"https://openalex.org/C2776196576","wikidata":"https://www.wikidata.org/wiki/Q196113","display_name":"Camouflage","level":2,"score":0.6877999901771545},{"id":"https://openalex.org/C153083717","wikidata":"https://www.wikidata.org/wiki/Q6535263","display_name":"Leverage (statistics)","level":2,"score":0.552299976348877},{"id":"https://openalex.org/C205711294","wikidata":"https://www.wikidata.org/wiki/Q176953","display_name":"Rendering (computer graphics)","level":2,"score":0.5198000073432922},{"id":"https://openalex.org/C165064840","wikidata":"https://www.wikidata.org/wiki/Q1321061","display_name":"Matching (statistics)","level":2,"score":0.4357999861240387},{"id":"https://openalex.org/C68537008","wikidata":"https://www.wikidata.org/wiki/Q247932","display_name":"Stereopsis","level":2,"score":0.42410001158714294},{"id":"https://openalex.org/C2779343474","wikidata":"https://www.wikidata.org/wiki/Q3109175","display_name":"Context (archaeology)","level":2,"score":0.39910000562667847},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.39500001072883606},{"id":"https://openalex.org/C52672216","wikidata":"https://www.wikidata.org/wiki/Q1749840","display_name":"Depth perception","level":3,"score":0.3806000053882599},{"id":"https://openalex.org/C26760741","wikidata":"https://www.wikidata.org/wiki/Q160402","display_name":"Perception","level":2,"score":0.3723999857902527},{"id":"https://openalex.org/C2776436953","wikidata":"https://www.wikidata.org/wiki/Q5163215","display_name":"Consistency (knowledge bases)","level":2,"score":0.36809998750686646},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.33160001039505005},{"id":"https://openalex.org/C121958486","wikidata":"https://www.wikidata.org/wiki/Q609543","display_name":"Binocular vision","level":2,"score":0.29750001430511475},{"id":"https://openalex.org/C90790637","wikidata":"https://www.wikidata.org/wiki/Q11681118","display_name":"Binocular disparity","level":3,"score":0.289900004863739},{"id":"https://openalex.org/C109950114","wikidata":"https://www.wikidata.org/wiki/Q4464732","display_name":"3D reconstruction","level":2,"score":0.2890999913215637},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.2867000102996826},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.2802000045776367},{"id":"https://openalex.org/C61455927","wikidata":"https://www.wikidata.org/wiki/Q1030529","display_name":"Blossom algorithm","level":3,"score":0.27059999108314514},{"id":"https://openalex.org/C59519942","wikidata":"https://www.wikidata.org/wiki/Q650665","display_name":"Drone","level":2,"score":0.2612999975681305},{"id":"https://openalex.org/C2776863239","wikidata":"https://www.wikidata.org/wiki/Q7936601","display_name":"Visual hull","level":3,"score":0.259799987077713}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1609/aaai.v40i16.38320","is_oa":true,"landing_page_url":"https://doi.org/10.1609/aaai.v40i16.38320","pdf_url":null,"source":{"id":"https://openalex.org/S4210191458","display_name":"Proceedings of the AAAI Conference on Artificial Intelligence","issn_l":"2159-5399","issn":["2159-5399","2374-3468"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310320058","host_organization_name":"Association for the Advancement of Artificial Intelligence","host_organization_lineage":["https://openalex.org/P4310320058"],"host_organization_lineage_names":["Association for the Advancement of Artificial Intelligence"],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the AAAI Conference on Artificial Intelligence","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.1609/aaai.v40i16.38320","is_oa":true,"landing_page_url":"https://doi.org/10.1609/aaai.v40i16.38320","pdf_url":null,"source":{"id":"https://openalex.org/S4210191458","display_name":"Proceedings of the AAAI Conference on Artificial Intelligence","issn_l":"2159-5399","issn":["2159-5399","2374-3468"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310320058","host_organization_name":"Association for the Advancement of Artificial Intelligence","host_organization_lineage":["https://openalex.org/P4310320058"],"host_organization_lineage_names":["Association for the Advancement of Artificial Intelligence"],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the AAAI Conference on Artificial Intelligence","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Though":[0],"deep":[1],"neural":[2],"models":[3,59,180],"adopted":[4],"to":[5,15,119,162],"realize":[6],"the":[7,30,50,61,99,117,140,143,167,178],"perception":[8],"of":[9,32,63,93,102],"autonomous":[10,64],"driving":[11],"have":[12],"proven":[13],"vulnerable":[14],"adversarial":[16,54],"examples,":[17],"known":[18],"attacks":[19,159],"often":[20],"leverage":[21],"2D":[22,80],"patches":[23],"and":[24,87,125,154],"target":[25,141],"mostly":[26],"monocular":[27],"perception.":[28],"Therefore,":[29],"effectiveness":[31,89],"Physical":[33],"Adversarial":[34],"Examples":[35],"(PAEs)":[36],"on":[37],"stereo-based":[38],"binocular":[39,128],"depth":[40,184],"estimation":[41],"remains":[42],"largely":[43],"unexplored.":[44],"To":[45,96],"this":[46],"end,":[47],"we":[48,105],"propose":[49,107,132],"first":[51],"texture-enabled":[52],"physical":[53],"attack":[55,88,136],"against":[56],"stereo":[57,94,111,179],"matching":[58,112],"in":[60,127],"context":[62],"driving.":[65],"Our":[66],"method":[67],"employs":[68],"a":[69,78,108,133],"3D":[70,110],"PAE":[71,118,147],"with":[72,98,122],"global":[73],"camouflage":[74],"texture":[75],"rather":[76],"than":[77],"local":[79],"patch-based":[81],"one,":[82],"ensuring":[83],"both":[84],"visual":[85],"consistency":[86],"across":[90],"different":[91],"viewpoints":[92],"cameras.":[95],"cope":[97],"disparity":[100],"effect":[101],"these":[103],"cameras,":[104],"also":[106],"new":[109],"rendering":[113],"module":[114],"that":[115,137,160,172],"allows":[116],"be":[120],"aligned":[121],"real-world":[123],"positions":[124],"headings":[126],"vision.":[129],"We":[130],"further":[131],"novel":[134],"merging":[135],"seamlessly":[138,164],"blends":[139],"into":[142,166,181],"environment":[144],"through":[145],"fine-grained":[146],"optimization.":[148],"It":[149],"has":[150],"significantly":[151],"enhanced":[152],"stealth":[153],"lethality":[155],"upon":[156],"existing":[157],"hiding":[158],"fail":[161],"get":[163],"merged":[165],"background.":[168],"Extensive":[169],"evaluations":[170],"show":[171],"our":[173],"PAEs":[174],"can":[175],"successfully":[176],"fool":[177],"producing":[182],"erroneous":[183],"information.":[185]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-03-18T00:00:00"}
