SRAP: Robust and Transferable Self-Reversible Adversarial Patch for Image Privacy Protection
Summary
Researchers developed SRAP (Self-Reversible Adversarial Patch), a technique that creates adversarial patches (small, intentionally corrupted image regions designed to fool AI models) that can be reversed back to the original image while protecting privacy. The method improves two key weaknesses in existing adversarial patches: transferability (working across different AI models, achieving up to 90% success rate) and robustness (resisting image processing and defensive techniques), and demonstrates an 88% attack success rate against commercial AI services.
Classification
Related Issues
Original source: http://ieeexplore.ieee.org/document/11450347
First tracked: April 9, 2026 at 08:02 PM
Classified by LLM (prompt v3) · confidence: 85%