2025
Towards Irreversible Attack: Fooling Scene Text Recognition via Multi-Population Coevolution Search
NeurIPS 2025poster
Recent work has shown that scene text recognition (STR) models are vulnerable to adversarial examples. Different from non-sequential vision tasks, the output sequence of STR models contains rich information. However, existing adversarial attacks against STR models can only lead to a few incorrect c…