Real-Time Robust Video Object Detection System Against Physical-World Adversarial Attacks

被引:1
|
作者
Han, Husheng [1 ,2 ,3 ]
Hu, Xing [1 ,4 ]
Hao, Yifan [3 ]
Xu, Kaidi [5 ]
Dang, Pucheng [1 ,2 ,3 ]
Wang, Ying [6 ]
Zhao, Yongwei [7 ]
Du, Zidong [1 ,4 ]
Guo, Qi
Wang, Yanzhi [6 ]
Zhang, Xishan [1 ,7 ]
Chen, Tianshi [8 ]
机构
[1] Chinese Acad Sci, Inst Comp Technol, State Key Lab Processors, Beijing 100190, Peoples R China
[2] Univ Chinese Acad Sci, Sch Comp Sci, Beijing 100049, Peoples R China
[3] Cambricon Technol, Dept Architecture Algorithm, Beijing 100191, Peoples R China
[4] Chinese Acad Sci, Shanghai Innovat Ctr Processor Technol, Beijing 100190, Peoples R China
[5] Drexel Univ, Coll Comp & Informat, Dept Comp Sci, Philadelphia, PA 19104 USA
[6] Northeastern Univ, Dept Elect & Comp Engn, Boston, MA 02115 USA
[7] Cambricon Technol, Dept Architecture Algorithm, Beijing 100191, Peoples R China
[8] Cambricon Technol, Beijing 100191, Peoples R China
关键词
Object detection; Streaming media; Optical flow; Feature extraction; Real-time systems; Task analysis; Detectors; Adversarial patch attack; deep learning security; domain-specific accelerator; hardware/software co-design; real time;
D O I
10.1109/TCAD.2023.3305932
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
DNN-based video object detection (VOD) powers autonomous driving and video surveillance industries with rising importance and promising opportunities. However, adversarial patch attack yields huge concern in live vision tasks because of its practicality, feasibility, and powerful attack effectiveness. This work proposes Themis, a software/hardware system to defend against adversarial patches for real-time robust VOD. We observe that adversarial patches exhibit extremely localized superficial feature importance in a small region with nonrobust predictions, and thus propose the adversarial region detection algorithm for adversarial effect elimination. Themis also proposes a systematic design to efficiently support the algorithm by eliminating redundant computations and memory traffics. Experimental results show that the proposed methodology can effectively recover the system from the adversarial attack with negligible hardware overhead.
引用
收藏
页码:366 / 379
页数:14
相关论文
共 50 条
  • [21] Physical Adversarial Attacks Against Aerial Object Detection With Feature-Aligned Expandable Textures
    Zhang, Yu
    Chen, Jianqi
    Peng, Zhenbang
    Dang, Yi
    Shi, Zhenwei
    Zou, Zhengxia
    IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2024, 62 : 1 - 1
  • [22] Adversarial Detection: Attacking Object Detection in Real Time
    Wu, Han
    Yunas, Syed
    Rowlands, Sareh
    Ruan, Wenjie
    Wahlström, Johan
    2023 IEEE INTELLIGENT VEHICLES SYMPOSIUM, IV, 2023,
  • [23] Generating robust real-time object detector with uncertainty via virtual adversarial training
    Chen, Yipeng
    Xu, Ke
    He, Di
    Ban, Xiaojuan
    INTERNATIONAL JOURNAL OF MACHINE LEARNING AND CYBERNETICS, 2022, 13 (02) : 431 - 445
  • [24] Generating robust real-time object detector with uncertainty via virtual adversarial training
    Yipeng Chen
    Ke Xu
    Di He
    Xiaojuan Ban
    International Journal of Machine Learning and Cybernetics, 2022, 13 : 431 - 445
  • [25] Real time object detection and trackingsystem for video surveillance system
    Jha, Sudan
    Seo, Changho
    Yang, Eunmok
    Joshi, Gyanendra Prasad
    MULTIMEDIA TOOLS AND APPLICATIONS, 2021, 80 (03) : 3981 - 3996
  • [26] Real time object detection and trackingsystem for video surveillance system
    Sudan Jha
    Changho Seo
    Eunmok Yang
    Gyanendra Prasad Joshi
    Multimedia Tools and Applications, 2021, 80 : 3981 - 3996
  • [27] An SoC system for real-time moving object detection
    Moon, Cheol-Hong
    Jang, Dong-Young
    Choi, Jong-Nam
    ADVANCED INTELLIGENT COMPUTING THEORIES AND APPLICATIONS: WITH ASPECTS OF THEORETICAL AND METHODOLOGICAL ISSUES, 2007, 4681 : 879 - +
  • [28] An Intelligent Real-Time Object Detection System on Drones
    Chen, Chao
    Min, Hongrui
    Peng, Yi
    Yang, Yongkui
    Wang, Zheng
    APPLIED SCIENCES-BASEL, 2022, 12 (20):
  • [29] Salient Object Detection by Spatiotemporal and Semantic Features in Real-Time Video Processing Systems
    Fang, Yuming
    Ding, Guanqun
    Wen, Wenying
    Yuan, Feiniu
    Yang, Yong
    Fang, Zhijun
    Lin, Weisi
    IEEE TRANSACTIONS ON INDUSTRIAL ELECTRONICS, 2020, 67 (11) : 9893 - 9903
  • [30] FAMINet: Learning Real-Time Semisupervised Video Object Segmentation With Steepest Optimized Optical Flow
    Liu, Ziyang
    Liu, Jingmeng
    Chen, Weihai
    Wu, Xingming
    Li, Zhengguo
    IEEE TRANSACTIONS ON INSTRUMENTATION AND MEASUREMENT, 2022, 71