PapMOT: Exploring Adversarial Patch Attack Against Multiple Object Tracking

被引:0
|
作者
Long, Jiahuan [1 ,2 ]
Jiang, Tingsong [2 ]
Yao, Wen [2 ]
Jia, Shuai [1 ]
Zhang, Weijia [1 ]
Zhou, Weien [2 ]
Ma, Chao [1 ]
Chen, Xiaoqian [2 ]
机构
[1] Shanghai Jiao Tong Univ, AI Inst, MoE Key Lab Artificial Intelligence, Shanghai, Peoples R China
[2] Chinese Acad Mil Sci, Def Innovat Inst, Beijing, Peoples R China
来源
关键词
Physical adversarial patches; Multiple object tracking; Evaluation metrics;
D O I
10.1007/978-3-031-72983-6_8
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Tracking multiple objects in a continuous video stream is crucial for many computer vision tasks. It involves detecting and associating objects with their respective identities across successive frames. Despite significant progress made in multiple object tracking (MOT), recent studies have revealed the vulnerability of existing MOT methods to adversarial attacks. Nevertheless, all of these attacks belong to digital attacks that inject pixel-level noise into input images, and are therefore ineffective in physical scenarios. To fill this gap, we propose PapMOT, which can generate physical adversarial patches against MOT for both digital and physical scenarios. Besides attacking the detection mechanism, PapMOT also optimizes a printable patch that can be detected as new targets to mislead the identity association process. Moreover, we introduce a patch enhancement strategy to further degrade the temporal consistency of tracking results across video frames, resulting in more aggressive attacks. We further develop new evaluation metrics to assess the robustness of MOT against such attacks. Extensive evaluations on multiple datasets demonstrate that our PapMOT can successfully attack various architectures of MOT trackers in digital scenarios. We also validate the effectiveness of PapMOT for physical attacks by deploying printed adversarial patches in the real world.
引用
收藏
页码:128 / 144
页数:17
相关论文
共 50 条
  • [21] Box-spoof attack against single object tracking
    Yan Jiang
    Guisheng Yin
    Weipeng Jing
    Linda Mohaisen
    Mahmoud Emam
    Ye Yuan
    Applied Intelligence, 2024, 54 : 1585 - 1601
  • [22] Box-spoof attack against single object tracking
    Jiang, Yan
    Yin, Guisheng
    Jing, Weipeng
    Mohaisen, Linda
    Emam, Mahmoud
    Yuan, Ye
    APPLIED INTELLIGENCE, 2024, 54 (02) : 1585 - 1601
  • [23] Patch Based Multiple Instance Learning Algorithm for Object Tracking
    Wang, Zhenjie
    Wang, Lijia
    Zhang, Hua
    COMPUTATIONAL INTELLIGENCE AND NEUROSCIENCE, 2017, 2017
  • [24] CodeMosaic Patch: Physical Adversarial Attacks Against Infrared Aerial Object Detectors
    He, Hangwei
    Wu, Libing
    Wang, Enshu
    Wang, Yizhou
    Zhao, Yu
    PRICAI 2024: TRENDS IN ARTIFICIAL INTELLIGENCE, PT I, 2025, 15281 : 54 - 68
  • [25] Adversarial Patch Attack on Multi-Scale Object Detection for UAV Remote Sensing Images
    Zhang, Yichuang
    Zhang, Yu
    Qi, Jiahao
    Bin, Kangcheng
    Wen, Hao
    Tong, Xunqian
    Zhong, Ping
    REMOTE SENSING, 2022, 14 (21)
  • [26] To See or Not to See: Exploring the Differences Between Multiple Identity Tracking and Multiple Object Tracking
    Mcleod, Katie
    Soo, Leili
    Andersen, Soren K.
    PERCEPTION, 2017, 46 (02) : 233 - 233
  • [27] Camouflaged Adversarial Attack on Object Detector
    Kim, Jeonghun
    Lee, Kyungmin
    Lee, Hyeongkeun
    Yang, Hunmin
    Oh, Se-Yoon
    2021 21ST INTERNATIONAL CONFERENCE ON CONTROL, AUTOMATION AND SYSTEMS (ICCAS 2021), 2021, : 613 - 617
  • [28] Transformer for multiple object tracking: Exploring locality to vision
    Wu, Shan
    Hadachi, Amnir
    Lu, Chaoru
    Vivet, Damien
    PATTERN RECOGNITION LETTERS, 2023, 170 : 70 - 76
  • [29] Adversarial attack to fool object detector
    Khattar, Sahil
    Krishna, C. Rama
    JOURNAL OF DISCRETE MATHEMATICAL SCIENCES & CRYPTOGRAPHY, 2020, 23 (02): : 547 - 562
  • [30] Topology-aware universal adversarial attack on 3D object tracking
    Riran Cheng
    Xupeng Wang
    Ferdous Sohel
    Hang Lei
    Visual Intelligence, 1 (1):