A road sign recognition attack defense method based on multi-objective road optimization

A multi-target and road sign technology, applied in the fields of intelligent transportation, deep learning, and computer vision, can solve problems such as hazards and difficulties, and achieve the effects of reducing time consumption, improving attack capabilities, and increasing the degree of physicalization

Active Publication Date: 2021-01-08
ZHEJIANG UNIV OF TECH
View PDF10 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

However, in real life, this kind of attack means that the internal parameters of the road sign recognition model need to be obtained in advance, which is quite difficult
Therefore, the street sign attack based on the black box model can realize the attack on the street sign recognition by simulating the physical scene without knowing the internal parameters of the street sign recognition model, which will cause greater harm

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A road sign recognition attack defense method based on multi-objective road optimization
  • A road sign recognition attack defense method based on multi-objective road optimization
  • A road sign recognition attack defense method based on multi-objective road optimization

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0026] In order to make the object, technical solution and advantages of the present invention clearer, the present invention will be further described in detail below in conjunction with the accompanying drawings and embodiments. It should be understood that the specific embodiments described here are only used to explain the present invention, and do not limit the protection scope of the present invention.

[0027] Such as figure 1 As shown, the street sign recognition attack defense method based on multi-objective road optimization provided in this embodiment includes the following steps:

[0028] S101. Collect street sign images, and divide the street sign images into a training set, a test set, and an adversarial set for generating adversarial samples after preprocessing.

[0029] When collecting street sign images, street sign images in different physical scenes can be collected, that is, street sign images under multiple targets that can include light and shadow change...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a street sign recognition confrontation defense method based on multi-objective road optimization, comprising: (1) constructing a training set, a test set and a confrontation set; (2) constructing a street sign classifier, and using the training set and the test set to compare The classifier is trained to obtain the street sign recognition model; (3) Construct the street sign attack model according to the particle swarm optimization algorithm, and use the street sign attack model to generate confrontation samples; (4) Correct the confrontation samples, apply the confrontation samples to the physical scene, and then collect the confrontation samples. The physical image of the sample; (5) Input the physical image of the adversarial sample into the street sign recognition model, and screen high-quality adversarial samples; (6) Add the high-quality adversarial samples to the training set, and use the training set to retrain the street sign recognition model , to realize the optimization of the adversarial defense of the street sign recognition model; (7) use the street sign recognition model optimized by the adversarial defense to recognize the street sign image, so as to realize the adversarial defense of the street sign recognition.

Description

technical field [0001] The invention belongs to the fields of computer vision, intelligent transportation, and deep learning, and in particular relates to a street sign recognition attack defense method based on multi-objective road optimization. Background technique [0002] With the rapid development of machine learning in recent years, computer vision technology and autonomous driving have gradually become one of the key technologies in people's lives. Road sign recognition is based on computer vision technology, which extracts information from traffic sign images in the objective world and processes the information so that machines can understand and recognize traffic signs in the image. With the unremitting efforts of researchers, road sign recognition technology has gradually matured, and the recognition accuracy has been continuously improved. Sometimes it can even compete with humans, and it has been successfully applied to intelligent transportation, intelligent dri...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): G06K9/00G06K9/32G06K9/62G06N3/00
CPCG06N3/006G06V20/54G06V20/63G06F18/241G06F18/214
Inventor 陈晋音陈治清沈诗婧郑海斌苏蒙蒙
Owner ZHEJIANG UNIV OF TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products