{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,2]],"date-time":"2026-01-02T03:25:07Z","timestamp":1767324307320,"version":"3.48.0"},"publisher-location":"Cham","reference-count":41,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783032128393","type":"print"},{"value":"9783032128409","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-3-032-12840-9_12","type":"book-chapter","created":{"date-parts":[[2026,1,2]],"date-time":"2026-01-02T03:22:42Z","timestamp":1767324162000},"page":"171-185","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Structured Universal Adversarial Attacks on\u00a0Object Detection for\u00a0Video Sequences"],"prefix":"10.1007","author":[{"given":"Sven","family":"Jacob","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Weijia","family":"Shao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gjergji","family":"Kasneci","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2026,1,2]]},"reference":[{"key":"12_CR1","doi-asserted-by":"crossref","unstructured":"Alkaabi, S., AlAzri, A., AlZakwani, S., Altamimi, F.: A methodology to evaluate video analytics for drilling safety operation using machine learning. In: Middle East Oil, Gas and Geosciences Show. OnePetro (2023)","DOI":"10.2118\/213764-MS"},{"key":"12_CR2","unstructured":"Almujally, N.A., et al.: A novel framework for vehicle detection and tracking in night ware surveillance systems. IEEE Access (2024)"},{"issue":"11","key":"12_CR3","doi-asserted-by":"publisher","first-page":"5293","DOI":"10.1007\/s00371-022-02660-6","volume":"39","author":"A Amirkhani","year":"2023","unstructured":"Amirkhani, A., Karimi, M.P., Banitalebi-Dehkordi, A.: A survey on adversarial attacks and defenses for object detection and their applications in autonomous vehicles. Vis. Comput. 39(11), 5293\u20135307 (2023)","journal-title":"Vis. Comput."},{"issue":"8","key":"12_CR4","doi-asserted-by":"publisher","first-page":"1427","DOI":"10.1109\/JPROC.2018.2853589","volume":"106","author":"T Bouwmans","year":"2018","unstructured":"Bouwmans, T., Javed, S., Zhang, H., Lin, Z., Otazo, R.: On the applications of robust PCA in image and video processing. Proc. IEEE 106(8), 1427\u20131457 (2018). https:\/\/doi.org\/10.1109\/JPROC.2018.2853589","journal-title":"Proc. IEEE"},{"key":"12_CR5","doi-asserted-by":"crossref","unstructured":"Chavdarova, T., et al.: Wildtrack: a multi-camera HD dataset for dense unscripted pedestrian detection. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, pp. 5030\u20135039 (2018)","DOI":"10.1109\/CVPR.2018.00528"},{"key":"12_CR6","doi-asserted-by":"crossref","unstructured":"Chavdarova, T., Fleuret, F.: Deep multi-camera people detection. In: 2017 16th IEEE International Conference on Machine Learning and Applications (ICMLA), pp. 848\u2013853. IEEE (2017)","DOI":"10.1109\/ICMLA.2017.00-50"},{"key":"12_CR7","doi-asserted-by":"crossref","unstructured":"Chen, X., Kundu, K., Zhang, Z., Ma, H., Fidler, S., Urtasun, R.: Monocular 3D object detection for autonomous driving. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition (CVPR) (2016)","DOI":"10.1109\/CVPR.2016.236"},{"key":"12_CR8","doi-asserted-by":"publisher","first-page":"140","DOI":"10.1016\/j.ssci.2015.12.005","volume":"84","author":"P Cocca","year":"2016","unstructured":"Cocca, P., Marciano, F., Alberti, M.: Video surveillance systems to enhance occupational safety: a case study. Saf. Sci. 84, 140\u2013148 (2016)","journal-title":"Saf. Sci."},{"key":"12_CR9","unstructured":"Croce, F., Hein, M.: Mind the box: $$ l_1 $$-APGD for sparse adversarial attacks on image classifiers. In: International Conference on Machine Learning, pp. 2201\u20132211. PMLR (2021)"},{"key":"12_CR10","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"396","DOI":"10.1007\/978-3-030-60248-2_27","volume-title":"Algorithms and Architectures for Parallel Processing","author":"J Ding","year":"2020","unstructured":"Ding, J., Xu, Z.: Adversarial attacks on deep learning models of computer vision: a survey. In: Qiu, M. (ed.) ICA3PP 2020. LNCS, vol. 12454, pp. 396\u2013408. Springer, Cham (2020). https:\/\/doi.org\/10.1007\/978-3-030-60248-2_27"},{"issue":"4","key":"12_CR11","doi-asserted-by":"publisher","first-page":"983","DOI":"10.1090\/jams\/852","volume":"29","author":"C Fefferman","year":"2016","unstructured":"Fefferman, C., Mitter, S., Narayanan, H.: Testing the manifold hypothesis. J. Am. Math. Soc. 29(4), 983\u20131049 (2016)","journal-title":"J. Am. Math. Soc."},{"issue":"3","key":"12_CR12","doi-asserted-by":"publisher","first-page":"1341","DOI":"10.1109\/TITS.2020.2972974","volume":"22","author":"D Feng","year":"2020","unstructured":"Feng, D., et al.: Deep multi-modal object detection and semantic segmentation for autonomous driving: datasets, methods, and challenges. IEEE Trans. Intell. Transp. Syst. 22(3), 1341\u20131360 (2020)","journal-title":"IEEE Trans. Intell. Transp. Syst."},{"key":"12_CR13","unstructured":"Feng, J., Cai, Q.Z., Zhou, Z.H.: Learning to confuse: generating training time adversarial data with auto-encoder. In: Advances in Neural Information Processing Systems, vol. 32 (2019)"},{"key":"12_CR14","doi-asserted-by":"crossref","unstructured":"Ferryman, J., Shahrokni, A.: Pets2009: dataset and challenge. In: 2009 Twelfth IEEE International Workshop on Performance Evaluation of Tracking and Surveillance, pp.\u00a01\u20136. IEEE (2009)","DOI":"10.1109\/PETS-WINTER.2009.5399556"},{"key":"12_CR15","unstructured":"Goodfellow, I.J., Shlens, J., Szegedy, C.: Explaining and harnessing adversarial examples. arXiv preprint arXiv:1412.6572 (2014)"},{"key":"12_CR16","doi-asserted-by":"crossref","unstructured":"Gu, S., Zhang, L., Zuo, W., Feng, X.: Weighted nuclear norm minimization with application to image denoising. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, pp. 2862\u20132869 (2014)","DOI":"10.1109\/CVPR.2014.366"},{"key":"12_CR17","doi-asserted-by":"crossref","unstructured":"He, K., Gkioxari, G., Doll\u00e1r, P., Girshick, R.: Mask R-CNN. In: Proceedings of the IEEE International Conference on Computer Vision, pp. 2961\u20132969 (2017)","DOI":"10.1109\/ICCV.2017.322"},{"key":"12_CR18","doi-asserted-by":"publisher","unstructured":"Huang, H., Wang, Y., Chen, Z., Tang, Z., Zhang, W., Ma, K.K.: Rpattack: refined patch attack on general object detectors. In: 2021 IEEE International Conference on Multimedia and Expo (ICME), pp.\u00a01\u20136 (2021). https:\/\/doi.org\/10.1109\/ICME51207.2021.9428443","DOI":"10.1109\/ICME51207.2021.9428443"},{"issue":"3","key":"12_CR19","doi-asserted-by":"publisher","first-page":"3981","DOI":"10.1007\/s11042-020-09749-x","volume":"80","author":"S Jha","year":"2021","unstructured":"Jha, S., Seo, C., Yang, E., Joshi, G.P.: Real time object detection and trackingsystem for video surveillance system. Multimedia Tools Appl. 80(3), 3981\u20133996 (2021)","journal-title":"Multimedia Tools Appl."},{"issue":"1","key":"12_CR20","doi-asserted-by":"publisher","first-page":"160","DOI":"10.1007\/s11263-022-01701-w","volume":"131","author":"E Kazemi","year":"2023","unstructured":"Kazemi, E., Kerdreux, T., Wang, L.: Minimally distorted structured adversarial attacks. Int. J. Comput. Vision 131(1), 160\u2013176 (2023)","journal-title":"Int. J. Comput. Vision"},{"issue":"6","key":"12_CR21","doi-asserted-by":"publisher","first-page":"3868","DOI":"10.1109\/TWC.2021.3124855","volume":"21","author":"B Kim","year":"2021","unstructured":"Kim, B., Sagduyu, Y.E., Davaslioglu, K., Erpek, T., Ulukus, S.: Channel-aware adversarial attacks against deep learning-based wireless signal classifiers. IEEE Trans. Wireless Commun. 21(6), 3868\u20133880 (2021)","journal-title":"IEEE Trans. Wireless Commun."},{"issue":"4","key":"12_CR22","doi-asserted-by":"publisher","first-page":"2179","DOI":"10.1109\/TDSC.2021.3050101","volume":"19","author":"M Kravchik","year":"2021","unstructured":"Kravchik, M., Shabtai, A.: Efficient cyber attack detection in industrial control systems using lightweight neural networks and PCA. IEEE Trans. Dependable Secure Comput. 19(4), 2179\u20132197 (2021)","journal-title":"IEEE Trans. Dependable Secure Comput."},{"key":"12_CR23","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2020.107584","volume":"110","author":"D Li","year":"2021","unstructured":"Li, D., Zhang, J., Huang, K.: Universal adversarial perturbations against object detection. Pattern Recogn. 110, 107584 (2021)","journal-title":"Pattern Recogn."},{"key":"12_CR24","doi-asserted-by":"publisher","first-page":"581","DOI":"10.1016\/j.procs.2021.04.009","volume":"184","author":"L Malburg","year":"2021","unstructured":"Malburg, L., Rieder, M.P., Seiger, R., Klein, P., Bergmann, R.: Object detection for smart factory processes by machine learning. Procedia Comput. Sci. 184, 581\u2013588 (2021)","journal-title":"Procedia Comput. Sci."},{"key":"12_CR25","doi-asserted-by":"crossref","unstructured":"Moosavi-Dezfooli, S.M., Fawzi, A., Fawzi, O., Frossard, P.: Universal adversarial perturbations. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, pp. 1765\u20131773 (2017)","DOI":"10.1109\/CVPR.2017.17"},{"key":"12_CR26","doi-asserted-by":"crossref","unstructured":"Nguyen, K.N.T., et al.: A survey and evaluation of adversarial attacks in object detection. IEEE Trans. Neural Netw. Learn. Syst. (2025)","DOI":"10.1109\/TNNLS.2025.3561225"},{"issue":"3","key":"12_CR27","doi-asserted-by":"publisher","first-page":"335","DOI":"10.3390\/s16030335","volume":"16","author":"L P\u00e9rez","year":"2016","unstructured":"P\u00e9rez, L., Rodr\u00edguez, \u00cd., Rodr\u00edguez, N., Usamentiaga, R., Garc\u00eda, D.F.: Robot guidance using machine vision techniques in industrial environments: a comparative review. Sensors 16(3), 335 (2016)","journal-title":"Sensors"},{"key":"12_CR28","doi-asserted-by":"crossref","unstructured":"Rezatofighi, H., Tsoi, N., Gwak, J., Sadeghian, A., Reid, I., Savarese, S.: Generalized intersection over union: a metric and a loss for bounding box regression. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 658\u2013666 (2019)","DOI":"10.1109\/CVPR.2019.00075"},{"key":"12_CR29","unstructured":"Sadiku, S., Wagner, M., Pokutta, S.: GSE: group-wise sparse and explainable adversarial attacks. arXiv preprint arXiv:2311.17434 (2023)"},{"key":"12_CR30","unstructured":"Savostianova, D., Zangrando, E., Tudisco, F.: Low-rank adversarial PGD attack. arXiv preprint arXiv:2410.12607 (2024)"},{"key":"12_CR31","doi-asserted-by":"publisher","unstructured":"Shao, W., Sivrikaya, F., Albayrak, S.: Optimistic optimisation of composite objective with exponentiated update. Mach. Learn. (2022). https:\/\/doi.org\/10.1007\/s10994-022-06229-1","DOI":"10.1007\/s10994-022-06229-1"},{"key":"12_CR32","unstructured":"Shi, Z., Ming, Y., Fan, Y., Sala, F., Liang, Y.: Domain generalization via nuclear norm regularization. In: Conference on Parsimony and Learning, pp. 179\u2013201. PMLR (2024)"},{"key":"12_CR33","doi-asserted-by":"crossref","unstructured":"Shukla, N., Banerjee, S.: Generating adversarial attacks in the latent space. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 730\u2013739 (2023)","DOI":"10.1109\/CVPRW59228.2023.00080"},{"key":"12_CR34","unstructured":"Subhash, V., Bialas, A., Pan, W., Doshi-Velez, F.: Why do universal adversarial attacks work on large language models?: geometry might be the answer. In: The Second Workshop on New Frontiers in Adversarial Machine Learning (2023)"},{"key":"12_CR35","unstructured":"Szegedy, C., et al.: Intriguing properties of neural networks. arXiv preprint arXiv:1312.6199 (2013)"},{"key":"12_CR36","doi-asserted-by":"crossref","unstructured":"Thys, S., Van\u00a0Ranst, W., Goedem\u00e9, T.: Fooling automated surveillance cameras: adversarial patches to attack person detection. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition Workshops (2019)","DOI":"10.1109\/CVPRW.2019.00012"},{"key":"12_CR37","doi-asserted-by":"publisher","unstructured":"Wang, Y., an\u00a0Tan, Y., Zhang, W., Zhao, Y., Kuang, X.: An adversarial attack on DNN-based black-box object detectors. J. Netw. Comput. Appl. 161, 102634 (2020). https:\/\/doi.org\/10.1016\/j.jnca.2020.102634. https:\/\/www.sciencedirect.com\/science\/article\/pii\/S1084804520301089","DOI":"10.1016\/j.jnca.2020.102634"},{"key":"12_CR38","unstructured":"Wu, X., Huang, L., Gao, C.: G-UAP: generic universal adversarial perturbation that fools RPN-based detectors. In: Lee, W.S., Suzuki, T. (eds.) Proceedings of The Eleventh Asian Conference on Machine Learning. Proceedings of Machine Learning Research, vol.\u00a0101, pp. 1204\u20131217. PMLR (2019). https:\/\/proceedings.mlr.press\/v101\/wu19a.html"},{"key":"12_CR39","doi-asserted-by":"publisher","unstructured":"Zhang, H., Zhou, W., Li, H.: Contextual adversarial attacks for object detection. In: 2020 IEEE International Conference on Multimedia and Expo (ICME), pp.\u00a01\u20136 (2020). https:\/\/doi.org\/10.1109\/ICME46284.2020.9102805","DOI":"10.1109\/ICME46284.2020.9102805"},{"issue":"11","key":"12_CR40","doi-asserted-by":"publisher","first-page":"3212","DOI":"10.1109\/TNNLS.2018.2876865","volume":"30","author":"ZQ Zhao","year":"2019","unstructured":"Zhao, Z.Q., Zheng, P., Xu, S.T., Wu, X.: Object detection with deep learning: a review. IEEE Trans. Neural Netw. Learn. Syst. 30(11), 3212\u20133232 (2019). https:\/\/doi.org\/10.1109\/TNNLS.2018.2876865","journal-title":"IEEE Trans. Neural Netw. Learn. Syst."},{"issue":"2","key":"12_CR41","doi-asserted-by":"publisher","first-page":"1377","DOI":"10.1109\/TII.2021.3061419","volume":"18","author":"X Zhou","year":"2021","unstructured":"Zhou, X., et al.: Intelligent small object detection for digital twin in smart manufacturing with industrial cyber-physical systems. IEEE Trans. Industr. Inf. 18(2), 1377\u20131386 (2021)","journal-title":"IEEE Trans. Industr. Inf."}],"container-title":["Lecture Notes in Computer Science","Pattern Recognition"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-12840-9_12","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,1,2]],"date-time":"2026-01-02T03:22:44Z","timestamp":1767324164000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-12840-9_12"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9783032128393","9783032128409"],"references-count":41,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-12840-9_12","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"2 January 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"DAGM GCPR","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"DAGM German Conference on Pattern Recognition","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Freiburg","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Germany","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2025","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"23 September 2025","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"26 September 2025","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"47","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"dagm2025","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/www.dagm-gcpr.de\/year\/2025","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}