Backdoor Attacks on Crowd Counting

07/12/2022
by   Yuhua Sun, et al.
0

Crowd counting is a regression task that estimates the number of people in a scene image, which plays a vital role in a range of safety-critical applications, such as video surveillance, traffic monitoring and flow control. In this paper, we investigate the vulnerability of deep learning based crowd counting models to backdoor attacks, a major security threat to deep learning. A backdoor attack implants a backdoor trigger into a target model via data poisoning so as to control the model's predictions at test time. Different from image classification models on which most of existing backdoor attacks have been developed and tested, crowd counting models are regression models that output multi-dimensional density maps, thus requiring different techniques to manipulate. In this paper, we propose two novel Density Manipulation Backdoor Attacks (DMBA^- and DMBA^+) to attack the model to produce arbitrarily large or small density estimations. Experimental results demonstrate the effectiveness of our DMBA attacks on five classic crowd counting models and four types of datasets. We also provide an in-depth analysis of the unique challenges of backdooring crowd counting models and reveal two key elements of effective attacks: 1) full and dense triggers and 2) manipulation of the ground truth counts or density maps. Our work could help evaluate the vulnerability of crowd counting models to potential backdoor attacks.

READ FULL TEXT

page 2

page 4

page 5

research
11/26/2019

Using Depth for Pixel-Wise Detection of Adversarial Attacks in Crowd Counting

State-of-the-art methods for counting people in crowded scenes rely on d...
research
04/23/2013

Counting people from above: Airborne video based crowd analysis

Crowd monitoring and analysis in mass events are highly important techno...
research
04/22/2021

Towards Adversarial Patch Analysis and Certified Defense against Crowd Counting

Crowd counting has drawn much attention due to its importance in safety-...
research
03/22/2023

Diffuse-Denoise-Count: Accurate Crowd-Counting with Diffusion Models

Crowd counting is a key aspect of crowd analysis and has been typically ...
research
05/16/2023

Accurate Gigapixel Crowd Counting by Iterative Zooming and Refinement

The increasing prevalence of gigapixel resolutions has presented new cha...
research
03/14/2018

Improving Object Counting with Heatmap Regulation

In this paper, we propose a simple and effective way to improve one-look...
research
07/20/2022

Discrete-Constrained Regression for Local Counting Models

Local counts, or the number of objects in a local area, is a continuous ...

Please sign up or login with your details

Forgot password? Click here to reset