Towards universal and sparse adversarial examples for visual object tracking

被引:4
|
作者
Sheng, Jingjing [1 ]
Zhang, Dawei [1 ]
Chen, Jianxin [2 ]
Xiao, Xin [3 ]
Zheng, Zhonglong [1 ]
机构
[1] Zhejiang Normal Univ, Sch Comp Sci & Technol, Jinhua 321000, Zhejiang, Peoples R China
[2] Jiaxing Univ, Jiaxing 314200, Zhejiang, Peoples R China
[3] Zhejiang Normal Univ, Coll Educ, Jinhua 321000, Zhejiang, Peoples R China
基金
中国国家自然科学基金;
关键词
Adversarial attack; Object tracking; Adversarial examples; Black-box attack; Interference patch;
D O I
10.1016/j.asoc.2024.111252
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Adversarial attack is aimed to add small perturbations to the model that are imperceptible to humans, resulting in incorrect outputs with high confidence. Currently, adversarial attack mainly focuses on image classification and object detection tasks, but are insufficient in visual tracking. Nevertheless, existing attack methods for object tracking are limited to Siamese networks, with other types of trackers being infrequently targeted. In order to expand the usage of adversarial attacks in object tracking, we propose a model-free black-box framework for learning to generate universal and sparse adversarial examples (USAE) for tracking task. To this end, we first randomly add a noisy patch to any interference image, and then apply standard projected gradient descent to optimize the generation process of adversarial examples which is subjected to a similarity constraint with original images, making its embedding feature closer to the patched interference image in ������2-norm. Consequently, there is no significant difference between adversarial images and original images for human vision, but leading to tracking failure. Furthermore, our method just attacks 50 original images with adversarial images in each sequence, rather than an entire dataset. Numerous experiments on VOT2018, OTB2013, OTB2015, and GOT-10k datasets verify the effectiveness of USAE attack. Specifically, the number of lost reaches 1180 on VOT2018, the precision of OTB2015 decreased by 42.1%, and the success rate of GOT-10k is reduced to 1.8%, which shows the attack effect is remarkable. Moreover, USAE has a good transferability among various trackers like SiamRPN++, ATOM, DiMP, KYS, and ToMP. Notice that the proposed method is black-box and applicable to most realistic scenarios.
引用
收藏
页数:12
相关论文
共 50 条
  • [11] Visual object tracking using Gaussian process and sparse representation
    Gozlou, Samira Ghareh
    Gozlou, Morteza Ghareh
    INTERNATIONAL JOURNAL OF APPLIED PATTERN RECOGNITION, 2015, 2 (02) : 128 - 141
  • [12] Online Visual Object Tracking with Supervised Sparse Representation and Learning
    Bai, Tianxiang
    Li, Y. F.
    Shao, Zhanpeng
    2014 13TH INTERNATIONAL CONFERENCE ON CONTROL AUTOMATION ROBOTICS & VISION (ICARCV), 2014, : 827 - 832
  • [13] Unsupervised cycle-consistent adversarial attacks for visual object tracking
    Yao, Rui
    Zhu, Xiangbin
    Zhou, Yong
    Shao, Zhiwen
    Hu, Fuyuan
    Zhang, Yanning
    DISPLAYS, 2023, 80
  • [14] Adversarial attack and defense algorithms towards space visual object detection
    Zhou D.
    Sun G.-H.
    Wu L.-G.
    Kongzhi yu Juece/Control and Decision, 2024, 39 (07): : 2161 - 2168
  • [15] Sparse Transformer-Based Sequence Generation for Visual Object Tracking
    Tian, Dan
    Liu, Dong-Xin
    Wang, Xiao
    Hao, Ying
    IEEE ACCESS, 2024, 12 : 154418 - 154425
  • [16] Sparse Selective Kernelized Correlation Filter Model for Visual Object Tracking
    Lu, Xiaohuan
    Yuan, Di
    He, Zhenyu
    Li, Donghao
    2017 INTERNATIONAL CONFERENCE ON SECURITY, PATTERN ANALYSIS, AND CYBERNETICS (SPAC), 2017, : 100 - 105
  • [17] A GENERAL BAYESIAN ALGORITHM FOR VISUAL OBJECT TRACKING BASED ON SPARSE FEATURES
    Soto, Mauricio
    Regazzoni, Carlo S.
    2011 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH, AND SIGNAL PROCESSING, 2011, : 1181 - 1184
  • [18] Robust visual tracking of infrared object via sparse representation model
    Ma, Junkai
    Luo, Haibo
    Chang, Zheng
    Hui, Bin
    INTERNATIONAL SYMPOSIUM ON OPTOELECTRONIC TECHNOLOGY AND APPLICATION 2014: IMAGE PROCESSING AND PATTERN RECOGNITION, 2014, 9301
  • [19] Online Object Tracking using Sparse Prototypes by Learning Visual Prior
    Divya, S.
    Latha, K.
    2013 INTERNATIONAL CONFERENCE ON COMMUNICATIONS AND SIGNAL PROCESSING (ICCSP), 2013, : 597 - 601
  • [20] Universal adversarial examples and perturbations for quantum classifiers
    Weiyuan Gong
    Dong-Ling Deng
    NationalScienceReview, 2022, 9 (06) : 48 - 55