PapMOT: Exploring Adversarial Patch Attack Against Multiple Object Tracking

被引:0
|
作者
Long, Jiahuan [1 ,2 ]
Jiang, Tingsong [2 ]
Yao, Wen [2 ]
Jia, Shuai [1 ]
Zhang, Weijia [1 ]
Zhou, Weien [2 ]
Ma, Chao [1 ]
Chen, Xiaoqian [2 ]
机构
[1] Shanghai Jiao Tong Univ, AI Inst, MoE Key Lab Artificial Intelligence, Shanghai, Peoples R China
[2] Chinese Acad Mil Sci, Def Innovat Inst, Beijing, Peoples R China
来源
关键词
Physical adversarial patches; Multiple object tracking; Evaluation metrics;
D O I
10.1007/978-3-031-72983-6_8
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Tracking multiple objects in a continuous video stream is crucial for many computer vision tasks. It involves detecting and associating objects with their respective identities across successive frames. Despite significant progress made in multiple object tracking (MOT), recent studies have revealed the vulnerability of existing MOT methods to adversarial attacks. Nevertheless, all of these attacks belong to digital attacks that inject pixel-level noise into input images, and are therefore ineffective in physical scenarios. To fill this gap, we propose PapMOT, which can generate physical adversarial patches against MOT for both digital and physical scenarios. Besides attacking the detection mechanism, PapMOT also optimizes a printable patch that can be detected as new targets to mislead the identity association process. Moreover, we introduce a patch enhancement strategy to further degrade the temporal consistency of tracking results across video frames, resulting in more aggressive attacks. We further develop new evaluation metrics to assess the robustness of MOT against such attacks. Extensive evaluations on multiple datasets demonstrate that our PapMOT can successfully attack various architectures of MOT trackers in digital scenarios. We also validate the effectiveness of PapMOT for physical attacks by deploying printed adversarial patches in the real world.
引用
收藏
页码:128 / 144
页数:17
相关论文
共 50 条
  • [1] Invisibility Spell: Adversarial Patch Attack Against Object Detectors
    Zhang, Jianyi
    Guan, Ronglin
    Zhao, Zhangchi
    Li, Xiuying
    Sun, Zezheng
    SECURITY AND PRIVACY IN COMMUNICATION NETWORKS, PT I, SECURECOMM 2023, 2025, 567 : 88 - 109
  • [2] Towards a Robust Adversarial Patch Attack Against Unmanned Aerial Vehicles Object Detection
    Shrestha, Samridha
    Pathak, Saurabh
    Viegas, Eduardo K.
    2023 IEEE/RSJ INTERNATIONAL CONFERENCE ON INTELLIGENT ROBOTS AND SYSTEMS, IROS, 2023, : 3256 - 3263
  • [3] GAA: Ghost Adversarial Attack for Object Tracking
    Lei, Mingyang
    Song, Hong
    Fan, Jingfan
    Xiao, Deqiang
    Ai, Danni
    Gu, Ying
    Yang, Jian
    IEEE TRANSACTIONS ON EMERGING TOPICS IN COMPUTATIONAL INTELLIGENCE, 2024, 8 (03): : 2602 - 2612
  • [4] IPAttack: imperceptible adversarial patch to attack object detectors
    Wen, Yongming
    Si, Peiyuan
    Zhou, Wei
    Zhao, Zongheng
    Yi, Chao
    Liu, Renyang
    APPLIED INTELLIGENCE, 2025, 55 (06)
  • [5] IPAttack: imperceptible adversarial patch to attack object detectorsIPAttack: imperceptible adversarial patch to attack object detectorsY. Wen et al.
    Yongming Wen
    Peiyuan Si
    Wei Zhou
    Zongheng Zhao
    Chao Yi
    Renyang Liu
    Applied Intelligence, 2025, 55 (7)
  • [6] An Enhanced Transferable Adversarial Attack Against Object Detection
    Shi, Guoqiang
    Lin, Zhi
    Peng, Anjie
    Zeng, Hui
    2023 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS, IJCNN, 2023,
  • [7] Bilateral Adversarial Patch Generating Network for the Object Tracking Algorithm
    Rasol, Jarhinbek
    Xu, Yuelei
    Zhang, Zhaoxiang
    Tao, Chengyang
    Hui, Tian
    REMOTE SENSING, 2023, 15 (14)
  • [8] Defending Physical Adversarial Attack on Object Detection via Adversarial Patch-Feature Energy
    Kim, Taeheon
    Yu, Youngjoon
    Ro, Yong Man
    PROCEEDINGS OF THE 30TH ACM INTERNATIONAL CONFERENCE ON MULTIMEDIA, MM 2022, 2022, : 1905 - 1913
  • [9] Tracklet-switch and imperceivable adversarial attack against pedestrian Multi-Object Tracking trackers
    Lin, Delv
    Chen, Qi
    Zhou, Chenyu
    He, Kun
    APPLIED SOFT COMPUTING, 2024, 162
  • [10] NON-RIGID TRANSFORMATION BASED ADVERSARIAL ATTACK AGAINST 3D OBJECT TRACKING
    Cheng, Riran
    Sang, Nan
    Zhou, Yinyuan
    Wang, Xupeng
    2022 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING (ICASSP), 2022, : 2744 - 2748