Universal Adversarial Perturbations Against Person Re-Identification

10/30/2019
by   Wenjie Ding, et al.
8

Person re-identification (re-ID) has made great progress and achieved high performance in recent years with the development of deep learning. However, as an application related to security issues, there are few researches considering the safety of person re-ID systems. In this paper, we attempt to explore the robustness of current person re-ID models against adversarial samples. Specifically, we attack the re-ID models using universal adversarial perturbations (UAPs), which are especially dangerous to the surveillance systems because it could fool most pedestrian images with a little overhead. Existing methods for UAPs mainly consider classification models, while the tasks in open set scenarios like re-ID are rarely explored. Re-ID attack is different from classification ones in the sense that the former discards decision boundary during test and cares more about the ranking list. Therefore, we propose an effective method to train UAPs against person re-ID models from the global list-wise perspective. Furthermore, to increase the impact of attack to different models and datasets, we propose a novel UAPs learning method based on total variation minimization. Extensive experiments validate the effectiveness of our proposed method.

READ FULL TEXT

page 1

page 4

page 6

research
01/30/2019

Adversarial Metric Attack for Person Re-identification

Person re-identification (re-ID) has attracted much attention recently d...
research
08/25/2019

advPattern: Physical-World Attacks on Deep Person Re-Identification via Adversarially Transformable Patterns

Person re-identification (re-ID) is the task of matching person images a...
research
04/08/2020

Transferable, Controllable, and Inconspicuous Adversarial Attacks on Person Re-identification With Deep Mis-Ranking

The success of DNNs has driven the extensive applications of person re-i...
research
11/29/2022

Similarity Distribution based Membership Inference Attack on Person Re-identification

While person Re-identification (Re-ID) has progressed rapidly due to its...
research
07/27/2018

Adversarial Open-World Person Re-Identification

In a typical real-world application of re-id, a watch-list (gallery set)...
research
11/20/2022

Invisible Backdoor Attack with Dynamic Triggers against Person Re-identification

In recent years, person Re-identification (ReID) has rapidly progressed ...
research
08/14/2020

Open-World Person Re-Identification With RGBD Camera in Top-View Configuration for Retail Applications

Person re-identification (re-ID) is currently a notably topic in the com...

Please sign up or login with your details

Forgot password? Click here to reset