Cooling-Shrinking Attack: Blinding the Tracker with Imperceptible Noises

03/21/2020
by   Bin Yan, et al.
4

Adversarial attack of CNN aims at deceiving models to misbehave by adding imperceptible perturbations to images. This feature facilitates to understand neural networks deeply and to improve the robustness of deep learning models. Although several works have focused on attacking image classifiers and object detectors, an effective and efficient method for attacking single object trackers of any target in a model-free way remains lacking. In this paper, a cooling-shrinking attack method is proposed to deceive state-of-the-art SiameseRPN-based trackers. An effective and efficient perturbation generator is trained with a carefully designed adversarial loss, which can simultaneously cool hot regions where the target exists on the heatmaps and force the predicted bounding box to shrink, making the tracked target invisible to trackers. Numerous experiments on OTB100, VOT2018, and LaSOT datasets show that our method can effectively fool the state-of-the-art SiameseRPN++ tracker by adding small perturbations to the template or the search regions. Besides, our method has good transferability and is able to deceive other top-performance trackers such as DaSiamRPN, DaSiamRPN-UpdateNet, and DiMP. The source codes are available at https://github.com/MasterBin-IIAU/CSA.

READ FULL TEXT

page 5

page 6

page 8

research
03/27/2021

IoU Attack: Towards Temporally Coherent Black-Box Adversarial Attack for Visual Object Tracking

Adversarial attack arises due to the vulnerability of deep neural networ...
research
12/30/2020

Temporally-Transferable Perturbations: Efficient, One-Shot Adversarial Attacks for Online Visual Object Trackers

In recent years, the trackers based on Siamese networks have emerged as ...
research
11/17/2021

TraSw: Tracklet-Switch Adversarial Attacks against Multi-Object Tracking

Benefiting from the development of Deep Neural Networks, Multi-Object Tr...
research
03/14/2022

Efficient universal shuffle attack for visual object tracking

Recently, adversarial attacks have been applied in visual object trackin...
research
07/26/2019

Tell Me What to Track

In recent years, deep-learning-based visual object trackers have been st...
research
07/17/2022

DIMBA: Discretely Masked Black-Box Attack in Single Object Tracking

The adversarial attack can force a CNN-based model to produce an incorre...
research
07/04/2020

Alpha-Refine: Boosting Tracking Performance by Precise Bounding Box Estimation

In recent years, the multiple-stage strategy has become a popular trend ...

Please sign up or login with your details

Forgot password? Click here to reset