Robust Trajectory Prediction against Adversarial Attacks

被引:0
|
作者
Cao, Yulong [1 ,2 ]
Xu, Danfei [2 ,3 ]
Weng, Xinshuo [2 ]
Mao, Z. Morley [1 ]
Anandkumar, Anima [2 ,4 ]
Xiao, Chaowei [2 ,5 ]
Pavone, Marco [2 ,6 ]
机构
[1] Univ Michigan, Ann Arbor, MI 48109 USA
[2] NVIDIA, Santa Clara, CA 95051 USA
[3] Georgia Inst Technol, Atlanta, GA 30332 USA
[4] CALTECH, Pasadena, CA 91125 USA
[5] Arizona State Univ, Tempe, AZ 85287 USA
[6] Stanford Univ, Stanford, CA 94305 USA
来源
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Trajectory prediction using deep neural networks (DNNs) is an essential component of autonomous driving (AD) systems. However, these methods are vulnerable to adversarial attacks, leading to serious consequences such as collisions. In this work, we identify two key ingredients to defend trajectory prediction models against adversarial attacks including (1) designing effective adversarial training methods and (2) adding domain-specific data augmentation to mitigate the performance degradation on clean data. We demonstrate that our method is able to improve the performance by 46% on adversarial data and at the cost of only 3% performance degradation on clean data, compared to the model trained with clean data. Additionally, compared to existing robust methods, our method can improve performance by 21% on adversarial examples and 9% on clean data. Our robust model is evaluated with a planner to study its downstream impacts. We demonstrate that our model can significantly reduce the severe accident rates (e.g., collisions and off-road driving)(1).
引用
收藏
页码:128 / 137
页数:10
相关论文
共 50 条
  • [31] Robust Multiple-Path Orienteering Problem: Securing Against Adversarial Attacks
    Shi, Guangyao
    Zhou, Lifeng
    Tokekar, Pratap
    IEEE TRANSACTIONS ON ROBOTICS, 2023, 39 (03) : 2060 - 2077
  • [32] (Compress and Restore)N : A Robust Defense Against Adversarial Attacks on Image Classification
    Ferrari, Claudio
    Becattini, Federico
    Galteri, Leonardo
    Del Bimbo, Alberto
    ACM TRANSACTIONS ON MULTIMEDIA COMPUTING COMMUNICATIONS AND APPLICATIONS, 2023, 19 (01)
  • [33] A Robust SNMP-MIB Intrusion Detection System Against Adversarial Attacks
    Yasmeen Alslman
    Mouhammd Alkasassbeh
    Mohammad Almseidin
    Arabian Journal for Science and Engineering, 2024, 49 : 4179 - 4195
  • [34] Robust Multiple-Path Orienteering Problem: Securing Against Adversarial Attacks
    Shi, Guangyao
    Zhou, Lifeng
    Tokekar, Pratap
    ROBOTICS: SCIENCE AND SYSTEMS XVI, 2020,
  • [35] When NAS Meets Robustness: In Search of Robust Architectures against Adversarial Attacks
    Guo, Minghao
    Yang, Yuzhe
    Xu, Rui
    Liu, Ziwei
    Lin, Dahua
    2020 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2020, : 628 - 637
  • [36] A Robust SNMP-MIB Intrusion Detection System Against Adversarial Attacks
    Alslman, Yasmeen
    Alkasassbeh, Mouhammd
    Almseidin, Mohammad
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2024, 49 (03) : 4179 - 4195
  • [37] Improved Robust Adversarial Model against Evasion Attacks on Intrusion Detection Systems
    Anaedevha, R. N.
    Trofimov, A. G.
    OPTICAL MEMORY AND NEURAL NETWORKS, 2024, 33 (SUPPL3) : S414 - S423
  • [38] A Robust Malware Detection Approach for Android System against Adversarial Example Attacks
    Li, Wenjia
    Bala, Neha
    Ahmar, Aemun
    Tovar, Fernanda
    Battu, Arpit
    Bambarkar, Prachi
    2019 IEEE 5TH INTERNATIONAL CONFERENCE ON COLLABORATION AND INTERNET COMPUTING (CIC 2019), 2019, : 360 - 365
  • [39] Defense against adversarial attacks: robust and efficient compressed optimized neural networks
    Kraidia, Insaf
    Ghenai, Afifa
    Belhaouari, Samir Brahim
    SCIENTIFIC REPORTS, 2024, 14 (01)
  • [40] Toward Robust Networks against Adversarial Attacks for Radio Signal Modulation Classification
    Manoj, B. R.
    Santos, Pablo Millan
    Sadeghi, Meysam
    Larsson, Erik G.
    2022 IEEE 23RD INTERNATIONAL WORKSHOP ON SIGNAL PROCESSING ADVANCES IN WIRELESS COMMUNICATION (SPAWC), 2022,