The author proposes the SAR-AE-SFP-Attack method to generate real physics adversarial examples by altering scattering feature parameters, significantly improving attack efficiency on CNN-based and Transformer-based models.
Proposing SAR-AE-SFP-Attack to generate real physics adversarial examples by altering scattering feature parameters.