arXiv · 2601.04752
Skeletonization-Based Adversarial Perturbations on Large Vision Language Model's Mathematical Text Recognition
Abstract
This work explores the visual capabilities and limitations of foundation models by introducing a novel adversarial attack method utilizing skeletonization to reduce the search space effectively. Our approach specifically targets images containing text, particularly mathematical formula images, which are more challenging due to their LaTeX conversion and intricate structure. We conduct a detailed evaluation of both character and semantic changes between original and adversarially perturbed outputs to provide insights into the models' visual interpretation and reasoning abilities. The effectiveness of our method is further demonstrated through its application to ChatGPT, which shows its practical implications in real-world scenarios.
Explore related subjects
Keep this discovery
Masatomo Yoshida, Haruto Namura, Nicola Adami, Masahiro Okuda. 2026-01-08. Skeletonization-Based Adversarial Perturbations on Large Vision Language Model's Mathematical Text Recognition. https://doi.org/10.1109/itc-cscc66376.2025.11137646
Cite the original work for its findings. Save a collection to share your selection of sources.