Loading…

An efficient method to fool and enhance object tracking with adversarial perturbations

Although current Siamese-based trackers have achieved impressive performance in visual object tracking by balancing accuracy and speed, their sensitivity to adversarial perturbation makes them face many risks in practical applications ( e.g., automatic drive). In this paper, we first propose a gener...

Full description

Saved in:
Bibliographic Details
Published in:Neural computing & applications 2023-05, Vol.35 (15), p.10821-10836
Main Authors: Pang, Haibo, Ma, Rongqi, Liu, Chengming, Su, Jie, Han, Linxuan
Format: Article
Language:English
Subjects:
Citations: Items that this one cites
Items that cite this one
Online Access:Get full text
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:Although current Siamese-based trackers have achieved impressive performance in visual object tracking by balancing accuracy and speed, their sensitivity to adversarial perturbation makes them face many risks in practical applications ( e.g., automatic drive). In this paper, we first propose a general attack method against Siamese-based trackers, and then carefully design an online augmentation strategy based on adversarial examples to improve the tracking accuracy. To ensure both attack and augmentation trackers simultaneously, two opposing losses are proposed to push and pull the gap between the template patch and search regions. Specifically, most Siamese-based trackers employ the cross-correlation module to associate features of two branches. The similarity between the template patch and the search region will be reflected on the cross-correlation map, which is the focus of our method. SiamCAR is the main research object of this paper; the tracking accuracy after deception and enhancement is reduced by 64.62% and improved by 0.88%, respectively. We also transfer our attack method to SiamRPN++, SiamBAN, SiamGAT, and TrDiMP. Extensive experiments on the popular benchmark datasets indicate the effectiveness and universality of our method.
ISSN:0941-0643
1433-3058
DOI:10.1007/s00521-023-08266-w