notesum.ai
Published at November 21AnywhereDoor: Multi-Target Backdoor Attacks on Object Detection
cs.CR
cs.AI
cs.CV
Released Date: November 21, 2024
Authors: Jialin Lu1, Junjie Shan1, Ziqi Zhao1, Ka-Ho Chow1
Aff.: 1School of Computing and Data Science, The University of Hong Kong

| Datasets | Models | Clean mAP | Untar. Removal ASR | Tar. Removal ASR | Untar. Miscls. ASR | Tar. Miscls. ASR | Untar. Gen. ASR |
| PASCAL VOC07+12 | Faster R-CNN | 76.3 | 97.5% | 86.2% | 97.8% | 80.6% | 88.8% |
| Baseline mAP: 77.6 | (-1.3) | ||||||
| DETR | 78.7 | 96.6% | 91.1% | 99.6% | 83.0% | 98.3% | |
| Baseline mAP: 79.0 | (-0.3) | ||||||
| YOLOv3 | 74.5 | 99.9% | 97.5% | 95.6% | 52.2% | 50.7% | |
| Baseline mAP: 67.9 | (+6.6) | ||||||
| MSCOCO | Faster R-CNN | 40.6 | 98.1% | 48.6% | 97.8% | 63.0% | 98.1% |
| Baseline mAP: 56.1 | (-15.5) | ||||||
| DETR | 35.9 | 94.4% | 41.8% | 96.5% | 57.8% | 97.6% | |
| Baseline mAP: 58.1 | (-22.2) | ||||||
| YOLOv3 | 53.1 | 99.8% | 50.8% | 96.1% | 16.0% | 56.5% | |
| Baseline mAP: 55.3 | (-2.2) |