Lune

CVPR2026顶会

AntiStyler: Defending Object Detection Models Against Adversarial Patch Attacks Using Style Removal

Idan Yankelev, Edita Grolman, Yarin Yerushalmi Levi, Amit Giloni, Omer Hofman, Toshiya Shimizu, Yuval Elovici, Asaf Shabtai

出版方
2026年份
1被引次数

摘要

Adversarial patch attacks pose a significant threat to the reliability of object detection (OD) models, particularly in real-time security applications. Although several defenses have been proposed, they often suffer from two limitations: 1) reduced performance on benign images, and 2) impractical processing time for real-time OD applications. In this paper, we present AntiStyler, a novel and rapid defense against adversarial patches. Given an input image, AntiStyler identifies and masks pixels that exhibit a "random" style associated with adversarial attacks and applies a series of spatial filters to refine the mask and remove unwanted noise, efficiently masking adversarial patches. Anti-Styler features model-, patch-, and attack-agnostic capabilities and does not require training, making it a fully agnostic zero-shot defense against adversarial patch attacks. Our evaluation on the COCO, INRIA, Superstore, and APRICOT datasets, with both digital and physical attacks, demonstrates AntiStyler's state-of-the-art robustness (improving adversarial performance by 8-15 mAP%) without compromising the original performance on benign images. Additionally, unlike most existing defenses, AntiStyler can process 10-12 frames per second (FPS), making it efficient and relevant for real-time OD applications. Our code is available at https://github.com/IdanYankelev/AntiStyler.

问问这篇 Paper

智能体会读完全文。

Lune 把这篇 Paper 索引到了最后一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。

可以从这些问题问起

智能体调用

Luneget_paper_fulltext

在 Lune 里问

免费开始,无需绑卡

lune papers fulltext 9cc6dbd2-055c-4f9a-ad8e-e18ee7c2ad89

它引用的顶会 Paper14

相关 Paper

黄昏的海面,两侧是细线勾勒的悬崖