Topology-aware universal adversarial attack on 3D object tracking

被引:0
|
作者
Riran Cheng
Xupeng Wang
Ferdous Sohel
Hang Lei
机构
[1] University of Electronic Science and Technology of China,School of Information and Software Engineering
[2] Murdoch University,School of Information Technology
来源
Visual Intelligence | / 1卷 / 1期
关键词
Deep nerual networks; 3D object tracking; Adversarial attack; Topology-aware universal perturbation;
D O I
10.1007/s44267-023-00033-8
中图分类号
学科分类号
摘要
3D object tracking based on deep neural networks has a wide range of potential applications, such as autonomous driving and robotics. However, deep neural networks are vulnerable to adversarial examples. Traditionally, adversarial examples are generated by applying perturbations to individual samples, which requires exhaustive calculations for each sample and thereby suffers from low efficiency during malicious attacks. Hence, the universal adversarial perturbation has been introduced, which is sample-agnostic. The universal perturbation is able to make classifiers misclassify most samples. In this paper, a topology-aware universal adversarial attack method against 3D object tracking is proposed, which can lead to predictions of a 3D tracker deviating from the ground truth in most scenarios. Specifically, a novel objective function consisting of a confidence loss, direction loss and distance loss generates an atomic perturbation from a tracking template, and aims to fail a tracking task. Subsequently, a series of atomic perturbations are iteratively aggregated to derive the universal adversarial perturbation. Furthermore, in order to address the characteristic of permutation invariance inherent in the point cloud data, the topology information of the tracking template is employed to guide the generation of the universal perturbation, which imposes correspondences between consecutively generated perturbations. The generated universal perturbation is designed to be aware of the topology of the targeted tracking template during its construction and application, thus leading to superior attack performance. Experiments on the KITTI dataset demonstrate that the performance of 3D object tracking can be significantly degraded by the proposed method.
引用
收藏
相关论文
共 50 条
  • [31] Robust statistics for 3D object tracking
    Preisig, Peter
    Kragic, Danica
    2006 IEEE INTERNATIONAL CONFERENCE ON ROBOTICS AND AUTOMATION (ICRA), VOLS 1-10, 2006, : 2403 - +
  • [32] Temporal-Aware Siamese Tracker: Integrate Temporal Context for 3D Object Tracking
    Lan, Kaihao
    Jiang, Haobo
    Xie, Jin
    COMPUTER VISION - ACCV 2022, PT I, 2023, 13841 : 20 - 35
  • [33] Universal Object-Level Adversarial Attack in Hyperspectral Image Classification
    Shi, Cheng
    Zhang, Mengxin
    Lv, Zhiyong
    Miao, Qiguang
    Pun, Chi-Man
    IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2023, 61 : 1 - 14
  • [34] A Framework for 3D Object Identification and Tracking
    Chliveros, Georgios
    Figueiredo, Rui P.
    Moreno, Plinio
    Pateraki, Maria
    Bernardino, Alexandre
    Santos-Victor, Jose
    Trahanias, Panos
    PROCEEDINGS OF THE 2014 9TH INTERNATIONAL CONFERENCE ON COMPUTER VISION, THEORY AND APPLICATIONS (VISAPP 2014), VOL 3, 2014, : 672 - 677
  • [35] 3D object digitization: Topology preserving reconstruction
    Stelldinger, Peer
    Latecki, Longin Jan
    18TH INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION, VOL 3, PROCEEDINGS, 2006, : 693 - +
  • [36] Statistical mesh distributions for 3D object topology
    Qasaimeh, Malik
    Zhang, Ying
    Thrinissi, Khaled
    Ben Hamza, A.
    2007 9TH INTERNATIONAL SYMPOSIUM ON SIGNAL PROCESSING AND ITS APPLICATIONS, VOLS 1-3, 2007, : 61 - 64
  • [37] Multi-view Correlation based Black-box Adversarial Attack for 3D Object Detection
    Liu, Bingyu
    Guo, Yuhong
    Jiang, Jianan
    Tang, Jian
    Deng, Weihong
    KDD '21: PROCEEDINGS OF THE 27TH ACM SIGKDD CONFERENCE ON KNOWLEDGE DISCOVERY & DATA MINING, 2021, : 1036 - 1044
  • [38] Distribution Aware VoteNet for 3D Object Detection
    Liang, Junxiong
    An, Pei
    Ma, Jie
    THIRTY-SIXTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE / THIRTY-FOURTH CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE / THE TWELVETH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2022, : 1583 - 1591
  • [39] Topology-aware moving least square deformation for 2D characters
    Wang, Xun
    Yang, Wenwu
    Kou, Wangbin
    Yang, Bailin
    Wang, Guozheng
    COMPUTER ANIMATION AND VIRTUAL WORLDS, 2016, 27 (06) : 546 - 555
  • [40] PapMOT: Exploring Adversarial Patch Attack Against Multiple Object Tracking
    Long, Jiahuan
    Jiang, Tingsong
    Yao, Wen
    Jia, Shuai
    Zhang, Weijia
    Zhou, Weien
    Ma, Chao
    Chen, Xiaoqian
    COMPUTER VISION - ECCV 2024, PT LI, 2025, 15109 : 128 - 144