AI RESEARCH
Transferable Physical-World Adversarial Patches Against Pedestrian Detection Models
arXiv CS.CV
•
ArXi:2604.22552v1 Announce Type: new Physical adversarial patch attacks critically threaten pedestrian detection, causing surveillance and autonomous driving systems to miss pedestrians and creating severe safety risks. Despite their effectiveness in controlled settings, existing physical attacks face two major limitations in practice: they lack systematic disruption of the multi-stage decision pipeline, enabling residual modules to offset perturbations, and they fail to model complex physical variations, leading to poor robustness.