首页> 外国专利> Automatic detection and classification of adversarial attacks

Automatic detection and classification of adversarial attacks

机译:自动检测和分类攻击

摘要

The invention relates to a method and a system for the detection of adversarial attacks on an automated detection system, in particular an image-based detection system, e.g. an object detection system of an intelligent camera sensor (1; 2; 3) for assisted or automated driving. The method comprises the steps: a) Providing a reference image / video / audio signal, e.g. an original image and a potentially manipulated image / video / audio signal (S12). b) Calculation of a set of n metrics (S14) which quantify differences between the reference signal and the potentially manipulated signal in different ways, where n is a natural number is greater than one. c) Structure of an n-dimensional feature space based on the calculated metrics (S16). d) Classification of the type of adversarial attack based on the calculated metrics in the n-dimensional feature space (S18) (S20). The Adversarial Attack classification enables a specific countermeasure (S30) to be initiated against a class of Adversarial Attacks recognized as critical (E1).
机译:本发明涉及一种用于在自动检测系统上检测敌对攻击的方法和系统,特别是在基于图像的检测系统上。用于辅助或自动驾驶的智能相机传感器(1; 2; 3)的对象检测系统。该方法包括以下步骤:a)提供参考图像/视频/音频信号,例如图像。原始图像和可能受到操纵的图像/视频/音频信号(S12)。 b)计算一组n个度量(S14),这些度量以不同的方式量化参考信号和潜在操纵信号之间的差异,其中n是自然数,大于1。 c)基于所计算的度量的n维特征空间的结构(S16)。 d)基于所计算的n维特征空间中的度量对对抗攻击的类型进行分类(S18)(S20)。通过对抗攻击分类,可以针对被识别为严重(E1)的对抗攻击类别启动特定对策(S30)。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号