English

BadSAM: Exploring Security Vulnerabilities of SAM via Backdoor Attacks

Computer Vision and Pattern Recognition 2023-05-08 v1 Artificial Intelligence

Abstract

Recently, the Segment Anything Model (SAM) has gained significant attention as an image segmentation foundation model due to its strong performance on various downstream tasks. However, it has been found that SAM does not always perform satisfactorily when faced with challenging downstream tasks. This has led downstream users to demand a customized SAM model that can be adapted to these downstream tasks. In this paper, we present BadSAM, the first backdoor attack on the image segmentation foundation model. Our preliminary experiments on the CAMO dataset demonstrate the effectiveness of BadSAM.

Keywords

Cite

@article{arxiv.2305.03289,
  title  = {BadSAM: Exploring Security Vulnerabilities of SAM via Backdoor Attacks},
  author = {Zihan Guan and Mengxuan Hu and Zhongliang Zhou and Jielu Zhang and Sheng Li and Ninghao Liu},
  journal= {arXiv preprint arXiv:2305.03289},
  year   = {2023}
}

Comments

2 pages, 3 figures

R2 v1 2026-06-28T10:26:27.966Z