Abstract: Highlights•We propose a robust and stealthy black-box projector-based physical attack: AdvCP;•AdvCP outperforms the baseline methods;•AdvCP performs robust physical transfer attacks against advanced and robust DNNs;•Adversarial training techniques cannot thoroughly defend against AdvCP.
Loading