Type | Attack goal | Deployment | Flexibility | ||||||
---|---|---|---|---|---|---|---|---|---|
Patch | Noise | Add/Change | Hide | Applied to image | Physically deployed | Must be near/on target | Can be placed anywhere | ||
Object Detection | Song et al. (2018) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | ||||
Chen et al. (2018) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Liu et al. (2018) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\)* | |||
Sitawarin et al. (2018) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Wei et al. (2018) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Zhao et al. (2019) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Thys et al. (2019) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Lee and Kolter (2019) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\)* | |||||
Wu et al. (2020) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Hoory et al. (2020) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Zhao et al. (2020) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Huang et al. (2020) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Chow et al. (2020) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | ||||
den Hollander et al. (2020) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Zhang et al. (2020) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Zolfi et al. (2020) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Li et al. (2020) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Li et al. (2020) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
den Hollander et al. (2020) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Img. Segment. | Fischer et al. (2017) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | ||||
Hendrik Metzen et al. (2017) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Arnab et al. (2018) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Kang et al. (2020) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Ozbulak et al. (2019) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||||
Both | Xie et al. (2017) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | |||
IPatch | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) | \(\bullet\) |