Counteracting Adversarial Attacks in Autonomous Driving (Invited Talk)

被引:18
|
作者
Sun, Qi [1 ]
Rao, Arjun Ashok [1 ]
Yao, Xufeng [1 ]
Yu, Bei [1 ]
Hu, Shiyan [2 ]
机构
[1] Chinese Univ Hong Kong, Hong Kong, Peoples R China
[2] Univ Southampton, Southampton, Hants, England
关键词
Robust Stereo Vision; Autonomous System; Adversarial Defense; Local Smoothness;
D O I
10.1145/3400302.3415758
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper, we focus on studying robust deep stereo vision of autonomous driving systems and counteracting adversarial attacks against it. Autonomous system operation requires real-time processing of measurement data which often contain significant uncertainties and noise. Adversarial attacks have been widely studied to simulate these perturbations in recent years. To counteract these attacks in autonomous systems, a novel defense method is proposed in this paper. A stereo-regularizer is proposed to guide the model to learn the implicit relationship between the left and right images of the stereo-vision system. Univariate and multivariate functions are adopted to characterize the relationships between the two input images and the object detection model. The regularizer is then relaxed to its upper bound to improve adversarial robustness. Furthermore, the upper bound is approximated by the remainder of its Taylor expansion to improve the local smoothness of the loss surface. The model parameters are trained via adversarial training with the novel regularization term. Our method exploits basic knowledge from the physical world, i.e., the mutual constraints of the two images in the stereo-based system. As such, outliers can be detected and defended with high accuracy and efficiency. Numerical experiments demonstrate that the proposed method offers superior performance when compared with traditional adversarial training methods in state-of-the-art stereo-based 3D object detection models for autonomous vehicles.
引用
收藏
页数:7
相关论文
共 50 条
  • [41] Assessment of Adversarial Attacks on Traffic Sign Detection for Connected and Autonomous Vehicles
    Suri, Aaditya
    Vaidya, Binod
    Mouftah, Hussein T.
    2023 IEEE 28TH INTERNATIONAL WORKSHOP ON COMPUTER AIDED MODELING AND DESIGN OF COMMUNICATION LINKS AND NETWORKS, CAMAD 2023, 2023, : 240 - 245
  • [42] Countering Adversarial Attacks on Autonomous Vehicles Using Denoising Techniques: A Review
    Kloukiniotis, A.
    Papandreou, A.
    Lalos, A.
    Kapsalas, P.
    Nguyen, D. -V.
    Moustakas, K.
    IEEE OPEN JOURNAL OF INTELLIGENT TRANSPORTATION SYSTEMS, 2022, 3 : 61 - 80
  • [43] Causal Robust Trajectory Prediction Against Adversarial Attacks for Autonomous Vehicles
    Duan A.
    Wang R.
    Cui Y.
    He P.
    Chen L.
    IEEE Internet of Things Journal, 2024, 11 (22) : 1 - 1
  • [44] An Autoencoder Based Approach to Defend Against Adversarial Attacks for Autonomous Vehicles
    Gan, Houchao
    Liu, Chen
    2020 INTERNATIONAL CONFERENCE ON CONNECTED AND AUTONOMOUS DRIVING (METROCAD 2020), 2020, : 43 - 44
  • [45] A survey on adversarial attacks and defenses for object detection and their applications in autonomous vehicles
    Amirkhani, Abdollah
    Karimi, Mohammad Parsa
    Banitalebi-Dehkordi, Amin
    VISUAL COMPUTER, 2023, 39 (11): : 5293 - 5307
  • [46] A survey on adversarial attacks and defenses for object detection and their applications in autonomous vehicles
    Abdollah Amirkhani
    Mohammad Parsa Karimi
    Amin Banitalebi-Dehkordi
    The Visual Computer, 2023, 39 : 5293 - 5307
  • [47] Adversarial Examples in Self-Driving: A Review of Available Datasets and Attacks
    Alam, Mohammad R.
    Ward, Chris M.
    2022 IEEE APPLIED IMAGERY PATTERN RECOGNITION WORKSHOP, AIPR, 2022,
  • [48] Detecting and Identifying Optical Signal Attacks on Autonomous Driving Systems
    Zhang, Jindi
    Zhang, Yifan
    Lu, Kejie
    Wang, Jianping
    Wu, Kui
    Jia, Xiaohua
    Liu, Bin
    IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (02) : 1140 - 1153
  • [49] Physical Backdoor Attacks to Lane Detection Systems in Autonomous Driving
    Han, Xingshuo
    Xu, Guowen
    Zhou, Yuan
    Yang, Xuehuan
    Li, Jiwei
    Zhang, Tianwei
    PROCEEDINGS OF THE 30TH ACM INTERNATIONAL CONFERENCE ON MULTIMEDIA, MM 2022, 2022, : 2957 - 2968
  • [50] Potential cyber threats of adversarial attacks on autonomous driving models (Jun, 10.1007/s11416-023-00486-x, 2023)
    Boltachev, Eldar
    JOURNAL OF COMPUTER VIROLOGY AND HACKING TECHNIQUES, 2024, 20 (02) : 315 - 315