@inproceedings{0080196f62ae4f9ebd28b4b4b80450fc,
title = "Laser-based holography for projecting adversarial perturbations to attack image classifiers",
abstract = "This paper presents two complementary methods, the Wavelength-Specific Map Attack (WSMA) and Neural Beam Fooling (NBF), that translate digital adversarial techniques into the physical realm using laser-based holography and a digital micromirror device (DMD). WSMA is an adversarial attack that extends the Jacobian-based Saliency Map Attack (JSMA) by optimizing perturbation placement based on the wavelength of the perturbation laser and generalizing its approach to operate on any gradient-based attribution map. NBF enables the physical realization of these perturbations by leveraging a spatial light modulator and the Gerchberg-Saxton algorithm to project structured light patterns that induce targeted misclassification in real-world camera systems. Additionally, NBF incorporates a novel adaptive filtering step to suppress twin-image artifacts and enhance projection fidelity. We demonstrate the successful deployment of sparse adversarial perturbations under varying conditions, highlighting the feasibility of real-world adversarial interference and offering new insights into bridging digital and physical attack techniques.",
author = "Hodes, \{Scott G.\} and Blose, \{Kory J.\} and Kane, \{Timothy Joseph\}",
note = "Publisher Copyright: {\textcopyright} 2025 SPIE. All rights reserved.; Applications of Machine Learning 2025 ; Conference date: 04-08-2025 Through 06-08-2025",
year = "2025",
month = sep,
day = "17",
doi = "10.1117/12.3063433",
language = "English (US)",
series = "Proceedings of SPIE - The International Society for Optical Engineering",
publisher = "SPIE",
editor = "Zelinski, \{Michael E.\} and Taha, \{Tarek M.\} and Barath Narayanan and Awwal, \{Abdul A. S.\} and Iftekharuddin, \{Khan M.\}",
booktitle = "Applications of Machine Learning 2025",
address = "United States",
}