Abstract
Deep neural networks (DNNs) are known to be vulnerable to adversarial examples—small, carefully crafted perturbations that can mislead model predictions. In this work, we introduce Hybrid-FGPG, a novel white-box adversarial attack that combines traditional gradient-based perturbations with geometric transformations such as pixel-wise rotation. Unlike classical methods such as FGSM and PGD, our approach explores additional perturbation subspaces, leading to more effective and less perceptible attacks. We evaluate Hybrid-FGPG across three diverse image datasets—CIFAR-10, GTSRB, and EuroSAT—using a ResNet-18 backbone. Comparative results against FGSM and PGD show that Hybrid-FGPG achieves higher misclassification rates while preserving visual fidelity. We also present qualitative visualizations and perturbation heatmaps that reveal the hybrid attack’s stealthy nature. Our findings suggest that integrating geometric components into gradient-based methods significantly enhances adversarial efficacy and transferability.
| Original language | English |
|---|---|
| Title of host publication | 2025 IEEE Globecom Workshops (GC Wkshps) |
| Publisher | IEEE |
| Pages | 2000-2005 |
| Number of pages | 6 |
| ISBN (Electronic) | 9798331567415 |
| ISBN (Print) | 9798331567422 |
| DOIs | |
| Publication status | Published - 7 Jul 2026 |
| Event | IEEE Global Communications Conference: Sustainable Communications for Ubiquitous Intelligence - Taipei International Convention Center, Taipei, Taiwan, Province of China Duration: 8 Dec 2025 → 12 Dec 2025 https://globecom2025.ieee-globecom.org/workshops |
Publication series
| Name | IEEE Globecom Workshops |
|---|---|
| Publisher | IEEE |
| ISSN (Print) | 2166-0069 |
| ISSN (Electronic) | 2166-0077 |
Conference
| Conference | IEEE Global Communications Conference |
|---|---|
| Country/Territory | Taiwan, Province of China |
| City | Taipei |
| Period | 8/12/25 → 12/12/25 |
| Internet address |
Keywords
- Adversarial attacks
- Black-box
- evasion
- surrogate-model
- transferability
- white-box
Fingerprint
Dive into the research topics of 'Hybrid-FGPG: a novel fusion of gradient and geometric transformations for adversarial vulnerability evaluation'. Together they form a unique fingerprint.Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver