Adversarial Driving: Attacking End-to-End Autonomous Driving

Han Wu, Syed Yunas, Sareh Rowlands, Wenjie Ruan, and Johan Wahlstrom

End-to-End driving models lead to smaller systems and better performance.

The NVIDIA End-to-End Driving Model

Classification models that use deep neural networks are vulnerable to adversarial attack.

Random Noises

Image-Specific Attack

Image-Agnostic Attack

Adversarial Driving in ROS


