Cooling-Shrinking Attack: Blinding the Tracker With Imperceptible Noises
Bin Yan, Dong Wang, Huchuan Lu, Xiaoyun Yang
Abstract
Adversarial attack of CNN aims at deceiving models to misbehave by adding imperceptible perturbations to images. This feature facilitates to understand neural networks deeply and to improve the robustness of deep learning models. Although several works have focused on attacking image classifiers and object detectors, an effective and efficient method for attacking single object trackers of any target in a model-free way remains lacking. In this paper, a cooling-shrinking attack method is proposed to deceive state-of-the-art SiameseRPN-based trackers. An effective and efficient perturbation generator is trained with a carefully designed adversarial loss, which can simultaneously cool hot regions where the target exists on the heatmaps and force the predicted bounding box to shrink, making the tracked target invisible to trackers. Numerous experiments on OTB100, VOT2018, and LaSOT datasets show that our method can effectively fool the state-of-theart SiameseRPN++ tracker by adding small perturbations to the template or the search regions. Besides, our method has good transferability and is able to deceive other topperformance trackers such as DaSiamRPN, DaSiamRPN-UpdateNet, and DiMP. The source codes are available at https://github.com/MasterBin-IIAU/CSA .
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 588dfd7f-2f8b-439e-9065-552197144d2bCited by top-tier papers18
- Fooling LiDAR Perception via Adversarial Trajectory PerturbationYiming Li, Congcong Wen, Felix Juefei-Xu, Chen FengICCV 2021 · 69 citations
- Learning to Adversarially Blur Visual Object TrackingQing Guo, Ziyi Cheng, Felix Juefei-Xu, Lei Ma et al.ICCV 2021 · 52 citations
- Towards Universal Physical Attacks on Single Object TrackingLi Ding, Yongwei Wang, Kaiwen Yuan, Minyang Jiang et al.AAAI 2021 · 48 citations
- A Unified Multi-Scenario Attacking Network for Visual Object TrackingXuesong Chen, Canmiao Fu, Feng Zheng, Yong Zhao et al.AAAI 2021 · 20 citations
- F&F Attack: Adversarial Attack against Multiple Object Trackers by Inducing False Negatives and False PositivesTao Zhou, Qi Ye, Wenhan Luo, Kaihao Zhang et al.ICCV 2023 · 13 citations
Builds on5
- Learning Discriminative Model Prediction for TrackingGoutam Bhat, Martin Danelljan, Luc Van Gool, Radu TimofteICCV 2019 · 1,294 citations
- Learning the Model Update for Siamese TrackersLichao Zhang, Abel Gonzalez-Garcia, Joost van de Weijer, Martin Danelljan et al.ICCV 2019 · 371 citations
- 'Skimming-Perusal' Tracking: A Framework for Real-Time and Robust Long-Term TrackingBin Yan, Haojie Zhao, Dong Wang, Huchuan Lu et al.ICCV 2019 · 177 citations
- Physical Adversarial Textures That Fool Visual Object TrackingRey Wiyatno, Anqi XuICCV 2019 · 88 citations
- High-Performance Long-Term Tracking With Meta-UpdaterKenan Dai, Yunhua Zhang, Dong Wang, Jianhua Li et al.CVPR 2020
Related papers
- One-Shot Adversarial Attacks on Visual Tracking With Dual AttentionXuesong Chen, Xiyu Yan, Feng Zheng, Yong Jiang et al.CVPR 2020
- Follow-me: Deceiving Trackers with Fabricated PathsShengtao Lou, Buyu Liu, Jun Bao, Jiajun Ding et al.ACM MM 2023
- Discriminative and Robust Online Learning for Siamese Visual TrackingJinghao Zhou, Peng Wang, Haoyang SunAAAI 2020 · 66 citations
- IoU Attack: Towards Temporally Coherent Black-Box Adversarial Attack for Visual Object TrackingShuai Jia, Yibing Song, Chao Ma, Xiaokang YangCVPR 2021
- Reinforced Similarity Learning: Siamese Relation Networks for Robust Object TrackingDawei Zhang, Zhonglong Zheng, Minglu Li, Xiaowei He et al.ACM MM 2020 · 15 citations
