journal: Applied Soft Computing Journal

Title: Multi-View Black-Box Physical Attacks on Infrared Pedestrian Detectors Using Adversarial Infrared Grid

Authors: Kalibinuer Tiliwalidi, Guangxi Lu, Ming Jia, Weiwen Shi, Chengyin Hu

Cover Letter

Dear Editor,

I am pleased to submit our manuscript entitled “Multi-View Black-Box Physical Attacks on Infrared Pedestrian Detectors Using Adversarial Infrared Grid” for consideration for publication in APPLIED SOFT COMPUTING. The study investigates a novel physical attack on infrared pedestrian detectors, which we believe will be of great interest to the readership of your journal.

Our research addresses the critical need for evaluating the robustness of infrared detection systems against adversarial attacks, an area that has significant implications for the security and reliability of these technologies in real-world applications. Infrared object detectors are integral to various safety-critical tasks such as autonomous driving and surveillance. However, their vulnerability to adversarial attacks poses serious security threats. The proposed AdvGrid method demonstrates superior performance in both digital and physical environments, validated through extensive experiments.

The key contributions of our paper include:

(1) Introduction of AdvGrid, a cost-effective, highly stealthy physical attack that does not require prior knowledge of the target model and can maintain efficient attack performance from multiple angles.

(2) Extensive experimental validation of AdvGrid’s effectiveness and robustness, outperforming baseline methods in multiple test environments and demonstrating its ability to evade detection by the naked eye.

(3) In-depth analysis of attack configurations through ablation studies, transfer attack experiments verifying generality across different detectors, and adversarial defense experiments providing insights and strategies for mitigating such attacks.

We believe that our work represents a significant advancement in the field of physical attacks on infrared systems and provides valuable insights for both attack and defense strategies in this domain.

We confirm that this manuscript has not been published elsewhere and is not under consideration by another journal. All authors have approved the manuscript and agree with its submission to APPLIED SOFT COMPUTING. We have no conflicts of interest to disclose.

We appreciate your consideration of our manuscript and look forward to your feedback. Please do not hesitate to contact me if you require any further information.

Thank you for your time and consideration.

Sincerely,

Kalibinuer Tiliwalidi, Chengyin Hu, Weiwen Shi, Ming Jia, Lizong Zhang

University of Electronic Science and Technology of China