Real-Time Robust Video Object Detection System Against Physical-World Adversarial Attacks

被引:1
|
作者
Han, Husheng [1 ,2 ,3 ]
Hu, Xing [1 ,4 ]
Hao, Yifan [3 ]
Xu, Kaidi [5 ]
Dang, Pucheng [1 ,2 ,3 ]
Wang, Ying [6 ]
Zhao, Yongwei [7 ]
Du, Zidong [1 ,4 ]
Guo, Qi
Wang, Yanzhi [6 ]
Zhang, Xishan [1 ,7 ]
Chen, Tianshi [8 ]
机构
[1] Chinese Acad Sci, Inst Comp Technol, State Key Lab Processors, Beijing 100190, Peoples R China
[2] Univ Chinese Acad Sci, Sch Comp Sci, Beijing 100049, Peoples R China
[3] Cambricon Technol, Dept Architecture Algorithm, Beijing 100191, Peoples R China
[4] Chinese Acad Sci, Shanghai Innovat Ctr Processor Technol, Beijing 100190, Peoples R China
[5] Drexel Univ, Coll Comp & Informat, Dept Comp Sci, Philadelphia, PA 19104 USA
[6] Northeastern Univ, Dept Elect & Comp Engn, Boston, MA 02115 USA
[7] Cambricon Technol, Dept Architecture Algorithm, Beijing 100191, Peoples R China
[8] Cambricon Technol, Beijing 100191, Peoples R China
关键词
Object detection; Streaming media; Optical flow; Feature extraction; Real-time systems; Task analysis; Detectors; Adversarial patch attack; deep learning security; domain-specific accelerator; hardware/software co-design; real time;
D O I
10.1109/TCAD.2023.3305932
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
DNN-based video object detection (VOD) powers autonomous driving and video surveillance industries with rising importance and promising opportunities. However, adversarial patch attack yields huge concern in live vision tasks because of its practicality, feasibility, and powerful attack effectiveness. This work proposes Themis, a software/hardware system to defend against adversarial patches for real-time robust VOD. We observe that adversarial patches exhibit extremely localized superficial feature importance in a small region with nonrobust predictions, and thus propose the adversarial region detection algorithm for adversarial effect elimination. Themis also proposes a systematic design to efficiently support the algorithm by eliminating redundant computations and memory traffics. Experimental results show that the proposed methodology can effectively recover the system from the adversarial attack with negligible hardware overhead.
引用
收藏
页码:366 / 379
页数:14
相关论文
共 50 条
  • [31] A Robust SNMP-MIB Intrusion Detection System Against Adversarial Attacks
    Alslman, Yasmeen
    Alkasassbeh, Mouhammd
    Almseidin, Mohammad
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2024, 49 (03) : 4179 - 4195
  • [32] A Robust Malware Detection Approach for Android System against Adversarial Example Attacks
    Li, Wenjia
    Bala, Neha
    Ahmar, Aemun
    Tovar, Fernanda
    Battu, Arpit
    Bambarkar, Prachi
    2019 IEEE 5TH INTERNATIONAL CONFERENCE ON COLLABORATION AND INTERNET COMPUTING (CIC 2019), 2019, : 360 - 365
  • [33] Segment and Complete: Defending Object Detectors against Adversarial Patch Attacks with Robust Patch Detection
    Liu, Jiang
    Levine, Alexander
    Lau, Chun Pong
    Chellappa, Rama
    Feizi, Soheil
    2022 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2022), 2022, : 14953 - 14962
  • [34] A robust hardware algorithm for real-time object tracking in video sequences
    Meribout, M
    Khriji, L
    Nakanishi, M
    REAL-TIME IMAGING, 2004, 10 (03) : 145 - 159
  • [35] Robust Backdoor Attacks against Deep Neural Networks in Real Physical World
    Xue, Mingfu
    He, Can
    Sun, Shichang
    Wang, Jian
    Liu, Weiqiang
    2021 IEEE 20TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2021), 2021, : 620 - 626
  • [36] A Real-Time Human Detection System for Video
    Zeng, Bobo
    Wang, Guijin
    Lin, Xinggang
    Liu, Chunxiao
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2012, E95D (07): : 1979 - 1988
  • [37] Real-time moving object detection for video monitoring systems
    Wei Zhiqiang1
    2. Qingdao Branch
    JournalofSystemsEngineeringandElectronics, 2006, (04) : 731 - 736
  • [38] Real-time moving object detection for video monitoring systems
    Li, Guanglun
    Wang, Yanling
    Shu, Weiqun
    2008 INTERNATIONAL SYMPOSIUM ON INTELLIGENT INFORMATION TECHNOLOGY APPLICATION, VOL III, PROCEEDINGS, 2008, : 163 - +
  • [39] YOLO-MAXVOD FOR REAL-TIME VIDEO OBJECT DETECTION
    Moturi, Pradeep
    Khanna, Mukund
    Singh, Kunal
    2023 IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING, ICIP, 2023, : 3145 - 3149
  • [40] REAL-TIME OBJECT DETECTION AND LOCALIZATION IN COMPRESSIVE SENSED VIDEO
    Bethi, Yeshwanth Ravi Theja
    Narayanan, Sathyaprakash
    Rangan, Venkat
    Chakraborty, Anirban
    Thakur, Chetan Singh
    2021 IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING (ICIP), 2021, : 1489 - 1493