Powered by OpenAIRE graph
Found an issue? Give us feedback
ZENODOarrow_drop_down
ZENODO
Article . 2026
License: CC BY
Data sources: Datacite
ZENODO
Article . 2026
License: CC BY
Data sources: Datacite
versions View all 2 versions
addClaim

Poisoning Object Detection Models for Surface Defect Inspection in Steel Manufacturing

Authors: Johansson, Jaan; Belmerhnia, Leïla; Spathoulas, Georgios; Marchal, Samuel;

Poisoning Object Detection Models for Surface Defect Inspection in Steel Manufacturing

Abstract

As Machine Learning (ML) becomes integral to automated quality assurance, the security of ML models emerges as a critical concern for manufacturing processes. Among the threats posed by adversarial machine learning attacks, data poisoning --- the corruption of training data to introduce malicious behavior in ML models --- represents the most concerning ML-related security risk to the industry. This paper investigates the vulnerability of ML-based quality assurance systems to data poisoning attacks in manufacturing, with steel surface defect inspection as a use-case. Using a popular object detection model trained on an industrial steel manufacturing image dataset, we evaluate two data poisoning approaches: 1) image poisoning and 2) label poisoning, targeting three adversarial objectives: a) misclassification of defect criticality, b) erroneous size estimation, and c) missed defect detection. Our experiments show that label poisoning is a serious threat to the accuracy of steel defect inspection, potentially leading to significant misevaluation in defect size and defect criticality even when less than 12% of the training data is compromised. On the other hand, we show that image poisoning has little impact on the accuracy of steel defect inspection even when more than half of the samples in a class are poisoned.

  • BIP!
    Impact byBIP!
    selected citations
    These citations are derived from selected sources.
    This is an alternative to the "Influence" indicator, which also reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically).
    0
    popularity
    This indicator reflects the "current" impact/attention (the "hype") of an article in the research community at large, based on the underlying citation network.
    Average
    influence
    This indicator reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically).
    Average
    impulse
    This indicator reflects the initial momentum of an article directly after its publication, based on the underlying citation network.
    Average
Powered by OpenAIRE graph
Found an issue? Give us feedback
selected citations
These citations are derived from selected sources.
This is an alternative to the "Influence" indicator, which also reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically).
BIP!Citations provided by BIP!
popularity
This indicator reflects the "current" impact/attention (the "hype") of an article in the research community at large, based on the underlying citation network.
BIP!Popularity provided by BIP!
influence
This indicator reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically).
BIP!Influence provided by BIP!
impulse
This indicator reflects the initial momentum of an article directly after its publication, based on the underlying citation network.
BIP!Impulse provided by BIP!
0
Average
Average
Average
Upload OA version
Are you the author of this publication? Upload your Open Access version to Zenodo!
It’s fast and easy, just two clicks!