Related Experiment Video
Updated: Sep 21, 2025

Author Spotlight: A Smartphone-Based Imaging Method for C. elegans Lawn Avoidance Assay
Published on: February 24, 2023
Surreptitious Adversarial Examples through Functioning QR Code
Aran Chindaudom1, Prarinya Siritanawan2, Karin Sumongkayothin3
1Division of Transdisciplinary Science, Japan Advanced Institute of Science and Technology, Nomi 923-1292, Japan.
Abstract:
The continuous advances in the technology of Convolutional Neural Network (CNN) and Deep Learning have been applied to facilitate various tasks of human life. However, security risks of the users' information and privacy have been increasing rapidly due to the models' vulnerabilities. We have developed a novel method of adversarial attack that can conceal its intent from human intuition through the use of a modified QR code. The modified QR code can be consistently scanned with a reader while retaining adversarial efficacy against image classification models. The QR adversarial patch was created and embedded into an input image to generate adversarial examples, which were trained against CNN image classification models. Experiments were performed to investigate the trade-off in different patch shapes and find the patch's optimal balance of scannability and adversarial efficacy. Furthermore, we have investigated whether particular classes of images are more resistant or vulnerable to the adversarial QR attack, and we also investigated the generality of the adversarial attack across different image classification models.
Related Concept Videos
Leaky Scanning
Understanding Deception
Masking and Demasking Agents
There are many masking agents, such as cyanide, fluoride, triethanolamine, thiourea, and 2,3-bis(sulfanyl)propan-1-ol (formerly 2,3-dimercapto-1-propanol), with the masking agent chosen based on...
Detection of Gross Error: The Q Test
Trial and Error and Algorithm
Design Example

