PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
September 19, 2025Automotive Innovation3 citationsOpen Access

Certified Robustness in Automated Driving Perception: A Review

View Full Paper
HYHuilin YinDalian University of TechnologyZZZiming ZhaoTongji UniversityJYJun YanMacau University of Science and Technology

Key Points

  • Applying certified robustness can enhance safety guarantees in automated driving perception systems.
  • Certified defense methods have shown potential for achieving over 60% certified accuracy against multi-source attacks.
  • Randomized smoothing provides a balance between certified accuracy and computational complexity for large datasets.
  • Future work should focus on reducing sample requirements and improving data source adaptability for automated driving systems.

Abstract

Abstract Adversarial examples expose the black-box nature of neural networks and pose substantial threats to safety-critical Automated Driving (AD) perception systems. The research on Certified Robustness is one of the most promising defenses due to its guarantee being unrelated to adversarial perturbations, and AD perception may provide users safety endorsement via well-designed certified defenses. This review surveys certified robustness approaches for image and point cloud data and evaluates certified defense methods from three dimensions: clean accuracy, certified accuracy, and computational overhead. Based on this review, applying certified defense to multi-sensor fusion perception models will provide lower-bound guarantees of accuracy, and may successfully defend multi-sources attacks with the certified accuracy greater than 60%. For machine learning-level attacks, randomized smoothing balances certified accuracy and computational complexity, and can scale to large datasets within 12% of the loss of clean accuracy. Future automated driving perception systems can focus on reducing the sample numbers of randomized smoothing and adapting to more data sources. The review also provides challenges and promising directions of certified robustness approaches, seeking to bridge the theoretical and practical considerations of defense for users regarding security and safety in AD perception.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Yin et al. (2025) studied this question.

synapsesocial.com/papers/68d46fbd31b076d99fa6968chttps://doi.org/10.1007/s42154-024-00347-3
Ask AI
Helpful
Bookmark
Share
View Full Paper