Physical Attack on Monocular Depth Estimation with Optimal Adversarial Patches

被引:48
|
作者
Cheng, Zhiyuan [1 ]
Liang, James [2 ]
Choi, Hongjun [1 ]
Tao, Guanhong [1 ]
Cao, Zhiwen [1 ]
Liu, Dongfang [2 ]
Zhang, Xiangyu [1 ]
机构
[1] Purdue Univ, W Lafayette, IN 47907 USA
[2] Rochester Inst Technol, Rochester, NY 14623 USA
来源
关键词
Physical adversarial attack; Monocular depth estimation; Autonomous driving;
D O I
10.1007/978-3-031-19839-7_30
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Deep learning has substantially boosted the performance of Monocular Depth Estimation (MDE), a critical component in fully vision-based autonomous driving (AD) systems (e.g., Tesla and Toyota). In this work, we develop an attack against learning-based MDE. In particular, we use an optimization-based method to systematically generate stealthy physical-object-oriented adversarial patches to attack depth estimation. We balance the stealth and effectiveness of our attack with object-oriented adversarial design, sensitive region localization, and natural style camouflage. Using real-world driving scenarios, we evaluate our attack on concurrent MDE models and a representative downstream task for AD (i.e., 3D object detection). Experimental results show that our method can generate stealthy, effective, and robust adversarial patches for different target objects and models and achieves more than 6m mean depth estimation error and 93% attack success rate (ASR) in object detection with a patch of 1/9 of the vehicle's rear area. Field tests on three different driving routes with a real vehicle indicate that we cause over 6m mean depth estimation error and reduce the object detection rate from 90.70% to 5.16% in continuous video frames.
引用
收藏
页码:514 / 532
页数:19
相关论文
共 50 条
  • [21] The Monocular Depth Estimation Challenge
    Spencer, Jaime
    Qian, C. Stella
    Russell, Chris
    Hadfield, Simon
    Graf, Erich
    Adams, Wendy
    Schofield, Andrew J.
    Elder, James
    Bowden, Richard
    Cong, Heng
    Mattoccia, Stefano
    Poggi, Matteo
    Suri, Zeeshan Khan
    Tang, Yang
    Tosi, Fabio
    Wang, Hao
    Zhang, Youmin
    Zhang, Yusheng
    Zhao, Chaoqiang
    2023 IEEE/CVF WINTER CONFERENCE ON APPLICATIONS OF COMPUTER VISION WORKSHOPS (WACVW), 2023, : 623 - 632
  • [22] Perceptual Monocular Depth Estimation
    Pan, Janice
    Bovik, Alan C.
    NEURAL PROCESSING LETTERS, 2021, 53 (02) : 1205 - 1228
  • [23] Perceptual Monocular Depth Estimation
    Janice Pan
    Alan C. Bovik
    Neural Processing Letters, 2021, 53 : 1205 - 1228
  • [24] Sparse depth densification for monocular depth estimation
    Zhen Liang
    Tiyu Fang
    Yanzhu Hu
    Yingjian Wang
    Multimedia Tools and Applications, 2024, 83 : 14821 - 14838
  • [25] Depth Map Decomposition for Monocular Depth Estimation
    Jun, Jinyoung
    Lee, Jae-Han
    Lee, Chul
    Kim, Chang-Su
    COMPUTER VISION - ECCV 2022, PT II, 2022, 13662 : 18 - 34
  • [26] Sparse depth densification for monocular depth estimation
    Liang, Zhen
    Fang, Tiyu
    Hu, Yanzhu
    Wang, Yingjian
    MULTIMEDIA TOOLS AND APPLICATIONS, 2024, 83 (05) : 14821 - 14838
  • [27] Generative Adversarial Networks for Unsupervised Monocular Depth Prediction
    Aleotti, Filippo
    Tosi, Fabio
    Poggi, Matteo
    Mattoccia, Stefano
    COMPUTER VISION - ECCV 2018 WORKSHOPS, PT I, 2019, 11129 : 337 - 354
  • [28] Monocular Depth Prediction using Generative Adversarial Networks
    Kumar, Arun C. S.
    Bhandarkar, Suchendra M.
    Prasad, Mukta
    PROCEEDINGS 2018 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION WORKSHOPS (CVPRW), 2018, : 413 - 421
  • [29] EVALUATING MONOCULAR DEPTH ESTIMATION METHODS
    Padkan, N.
    Trybala, P.
    Battisti, R.
    Remondino, F.
    Bergeret, C.
    2ND GEOBENCH WORKSHOP ON EVALUATION AND BENCHMARKING OF SENSORS, SYSTEMS AND GEOSPATIAL DATA IN PHOTOGRAMMETRY AND REMOTE SENSING, VOL. 48-1, 2023, : 137 - 144
  • [30] MONOCULAR DEPTH ESTIMATION IN FOREST ENVIRONMENTS
    Hristova, H.
    Abegg, M.
    Fischer, C.
    Rehush, N.
    XXIV ISPRS CONGRESS IMAGING TODAY, FORESEEING TOMORROW, COMMISSION II, 2022, 43-B2 : 1017 - 1023