Adversarial Attacks on Monocular Pose Estimation
Advances in deep learning have resulted in steady progress in computer vision with improved accuracy on tasks such as object detection and semantic segmentation. Nevertheless, deep neural networks are vulnerable to adversarial attacks, thus presenting a challenge in reliable deployment. Two of the p...
Gespeichert in:
Veröffentlicht in: | arXiv.org 2022-07 |
---|---|
Hauptverfasser: | , , , |
Format: | Artikel |
Sprache: | eng |
Schlagworte: | |
Online-Zugang: | Volltext |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
container_end_page | |
---|---|
container_issue | |
container_start_page | |
container_title | arXiv.org |
container_volume | |
creator | Chawla, Hemang Varma, Arnav Arani, Elahe Zonooz, Bahram |
description | Advances in deep learning have resulted in steady progress in computer vision with improved accuracy on tasks such as object detection and semantic segmentation. Nevertheless, deep neural networks are vulnerable to adversarial attacks, thus presenting a challenge in reliable deployment. Two of the prominent tasks in 3D scene-understanding for robotics and advanced drive assistance systems are monocular depth and pose estimation, often learned together in an unsupervised manner. While studies evaluating the impact of adversarial attacks on monocular depth estimation exist, a systematic demonstration and analysis of adversarial perturbations against pose estimation are lacking. We show how additive imperceptible perturbations can not only change predictions to increase the trajectory drift but also catastrophically alter its geometry. We also study the relation between adversarial perturbations targeting monocular depth and pose estimation networks, as well as the transferability of perturbations to other networks with different architectures and losses. Our experiments show how the generated perturbations lead to notable errors in relative rotation and translation predictions and elucidate vulnerabilities of the networks. |
doi_str_mv | 10.48550/arxiv.2207.07032 |
format | Article |
fullrecord | <record><control><sourceid>proquest_arxiv</sourceid><recordid>TN_cdi_arxiv_primary_2207_07032</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>2689954342</sourcerecordid><originalsourceid>FETCH-LOGICAL-a952-7c9f1b2ed71c638fa87d6d5b31e96a8a87df5c66addcb8c71caea1ee36cc0b193</originalsourceid><addsrcrecordid>eNotj8tqwzAQRUWh0JDmA7qqoWu70sh6LU1IH5DSLrI3Y0kGp66VSnZo_75O0tVw4XDvHELuGC1KLQR9xPjTHQsAqgqqKIcrsgDOWa5LgBuySmlPKQWpQAi-ILRyRx8Txg77rBpHtJ8pC0P2FoZgpx5j9hGSzzZp7L5w7MJwS65b7JNf_d8l2T1tduuXfPv-_LqutjkaAbmypmUNeKeYlVy3qJWTTjSceSNRn2IrrJTonG20nSn0yLzn0lraMMOX5P5Se9apD3Gej7_1Sas-a83Ew4U4xPA9-TTW-zDFYf6pBqmNESUvgf8BWIRQOQ</addsrcrecordid><sourcetype>Open Access Repository</sourcetype><iscdi>true</iscdi><recordtype>article</recordtype><pqid>2689954342</pqid></control><display><type>article</type><title>Adversarial Attacks on Monocular Pose Estimation</title><source>arXiv.org</source><source>Free E- Journals</source><creator>Chawla, Hemang ; Varma, Arnav ; Arani, Elahe ; Zonooz, Bahram</creator><creatorcontrib>Chawla, Hemang ; Varma, Arnav ; Arani, Elahe ; Zonooz, Bahram</creatorcontrib><description>Advances in deep learning have resulted in steady progress in computer vision with improved accuracy on tasks such as object detection and semantic segmentation. Nevertheless, deep neural networks are vulnerable to adversarial attacks, thus presenting a challenge in reliable deployment. Two of the prominent tasks in 3D scene-understanding for robotics and advanced drive assistance systems are monocular depth and pose estimation, often learned together in an unsupervised manner. While studies evaluating the impact of adversarial attacks on monocular depth estimation exist, a systematic demonstration and analysis of adversarial perturbations against pose estimation are lacking. We show how additive imperceptible perturbations can not only change predictions to increase the trajectory drift but also catastrophically alter its geometry. We also study the relation between adversarial perturbations targeting monocular depth and pose estimation networks, as well as the transferability of perturbations to other networks with different architectures and losses. Our experiments show how the generated perturbations lead to notable errors in relative rotation and translation predictions and elucidate vulnerabilities of the networks.</description><identifier>EISSN: 2331-8422</identifier><identifier>DOI: 10.48550/arxiv.2207.07032</identifier><language>eng</language><publisher>Ithaca: Cornell University Library, arXiv.org</publisher><subject>Artificial neural networks ; Computer Science - Artificial Intelligence ; Computer Science - Computer Vision and Pattern Recognition ; Computer vision ; Machine learning ; Object recognition ; Perturbation ; Pose estimation ; Robotics ; Semantic segmentation</subject><ispartof>arXiv.org, 2022-07</ispartof><rights>2022. This work is published under http://creativecommons.org/licenses/by-nc-sa/4.0/ (the “License”). Notwithstanding the ProQuest Terms and Conditions, you may use this content in accordance with the terms of the License.</rights><rights>http://creativecommons.org/licenses/by-nc-sa/4.0</rights><oa>free_for_read</oa><woscitedreferencessubscribed>false</woscitedreferencessubscribed></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><link.rule.ids>228,230,776,780,881,27904</link.rule.ids><backlink>$$Uhttps://doi.org/10.48550/arXiv.2207.07032$$DView paper in arXiv$$Hfree_for_read</backlink><backlink>$$Uhttps://doi.org/10.1109/IROS47612.2022.9982154$$DView published paper (Access to full text may be restricted)$$Hfree_for_read</backlink></links><search><creatorcontrib>Chawla, Hemang</creatorcontrib><creatorcontrib>Varma, Arnav</creatorcontrib><creatorcontrib>Arani, Elahe</creatorcontrib><creatorcontrib>Zonooz, Bahram</creatorcontrib><title>Adversarial Attacks on Monocular Pose Estimation</title><title>arXiv.org</title><description>Advances in deep learning have resulted in steady progress in computer vision with improved accuracy on tasks such as object detection and semantic segmentation. Nevertheless, deep neural networks are vulnerable to adversarial attacks, thus presenting a challenge in reliable deployment. Two of the prominent tasks in 3D scene-understanding for robotics and advanced drive assistance systems are monocular depth and pose estimation, often learned together in an unsupervised manner. While studies evaluating the impact of adversarial attacks on monocular depth estimation exist, a systematic demonstration and analysis of adversarial perturbations against pose estimation are lacking. We show how additive imperceptible perturbations can not only change predictions to increase the trajectory drift but also catastrophically alter its geometry. We also study the relation between adversarial perturbations targeting monocular depth and pose estimation networks, as well as the transferability of perturbations to other networks with different architectures and losses. Our experiments show how the generated perturbations lead to notable errors in relative rotation and translation predictions and elucidate vulnerabilities of the networks.</description><subject>Artificial neural networks</subject><subject>Computer Science - Artificial Intelligence</subject><subject>Computer Science - Computer Vision and Pattern Recognition</subject><subject>Computer vision</subject><subject>Machine learning</subject><subject>Object recognition</subject><subject>Perturbation</subject><subject>Pose estimation</subject><subject>Robotics</subject><subject>Semantic segmentation</subject><issn>2331-8422</issn><fulltext>true</fulltext><rsrctype>article</rsrctype><creationdate>2022</creationdate><recordtype>article</recordtype><sourceid>ABUWG</sourceid><sourceid>AFKRA</sourceid><sourceid>AZQEC</sourceid><sourceid>BENPR</sourceid><sourceid>CCPQU</sourceid><sourceid>DWQXO</sourceid><sourceid>GOX</sourceid><recordid>eNotj8tqwzAQRUWh0JDmA7qqoWu70sh6LU1IH5DSLrI3Y0kGp66VSnZo_75O0tVw4XDvHELuGC1KLQR9xPjTHQsAqgqqKIcrsgDOWa5LgBuySmlPKQWpQAi-ILRyRx8Txg77rBpHtJ8pC0P2FoZgpx5j9hGSzzZp7L5w7MJwS65b7JNf_d8l2T1tduuXfPv-_LqutjkaAbmypmUNeKeYlVy3qJWTTjSceSNRn2IrrJTonG20nSn0yLzn0lraMMOX5P5Se9apD3Gej7_1Sas-a83Ew4U4xPA9-TTW-zDFYf6pBqmNESUvgf8BWIRQOQ</recordid><startdate>20220714</startdate><enddate>20220714</enddate><creator>Chawla, Hemang</creator><creator>Varma, Arnav</creator><creator>Arani, Elahe</creator><creator>Zonooz, Bahram</creator><general>Cornell University Library, arXiv.org</general><scope>8FE</scope><scope>8FG</scope><scope>ABJCF</scope><scope>ABUWG</scope><scope>AFKRA</scope><scope>AZQEC</scope><scope>BENPR</scope><scope>BGLVJ</scope><scope>CCPQU</scope><scope>DWQXO</scope><scope>HCIFZ</scope><scope>L6V</scope><scope>M7S</scope><scope>PIMPY</scope><scope>PQEST</scope><scope>PQQKQ</scope><scope>PQUKI</scope><scope>PRINS</scope><scope>PTHSS</scope><scope>AKY</scope><scope>GOX</scope></search><sort><creationdate>20220714</creationdate><title>Adversarial Attacks on Monocular Pose Estimation</title><author>Chawla, Hemang ; Varma, Arnav ; Arani, Elahe ; Zonooz, Bahram</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-LOGICAL-a952-7c9f1b2ed71c638fa87d6d5b31e96a8a87df5c66addcb8c71caea1ee36cc0b193</frbrgroupid><rsrctype>articles</rsrctype><prefilter>articles</prefilter><language>eng</language><creationdate>2022</creationdate><topic>Artificial neural networks</topic><topic>Computer Science - Artificial Intelligence</topic><topic>Computer Science - Computer Vision and Pattern Recognition</topic><topic>Computer vision</topic><topic>Machine learning</topic><topic>Object recognition</topic><topic>Perturbation</topic><topic>Pose estimation</topic><topic>Robotics</topic><topic>Semantic segmentation</topic><toplevel>online_resources</toplevel><creatorcontrib>Chawla, Hemang</creatorcontrib><creatorcontrib>Varma, Arnav</creatorcontrib><creatorcontrib>Arani, Elahe</creatorcontrib><creatorcontrib>Zonooz, Bahram</creatorcontrib><collection>ProQuest SciTech Collection</collection><collection>ProQuest Technology Collection</collection><collection>Materials Science & Engineering Collection</collection><collection>ProQuest Central (Alumni Edition)</collection><collection>ProQuest Central UK/Ireland</collection><collection>ProQuest Central Essentials</collection><collection>ProQuest Central</collection><collection>Technology Collection</collection><collection>ProQuest One Community College</collection><collection>ProQuest Central Korea</collection><collection>SciTech Premium Collection</collection><collection>ProQuest Engineering Collection</collection><collection>Engineering Database</collection><collection>Publicly Available Content Database</collection><collection>ProQuest One Academic Eastern Edition (DO NOT USE)</collection><collection>ProQuest One Academic</collection><collection>ProQuest One Academic UKI Edition</collection><collection>ProQuest Central China</collection><collection>Engineering Collection</collection><collection>arXiv Computer Science</collection><collection>arXiv.org</collection><jtitle>arXiv.org</jtitle></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext</fulltext></delivery><addata><au>Chawla, Hemang</au><au>Varma, Arnav</au><au>Arani, Elahe</au><au>Zonooz, Bahram</au><format>journal</format><genre>article</genre><ristype>JOUR</ristype><atitle>Adversarial Attacks on Monocular Pose Estimation</atitle><jtitle>arXiv.org</jtitle><date>2022-07-14</date><risdate>2022</risdate><eissn>2331-8422</eissn><abstract>Advances in deep learning have resulted in steady progress in computer vision with improved accuracy on tasks such as object detection and semantic segmentation. Nevertheless, deep neural networks are vulnerable to adversarial attacks, thus presenting a challenge in reliable deployment. Two of the prominent tasks in 3D scene-understanding for robotics and advanced drive assistance systems are monocular depth and pose estimation, often learned together in an unsupervised manner. While studies evaluating the impact of adversarial attacks on monocular depth estimation exist, a systematic demonstration and analysis of adversarial perturbations against pose estimation are lacking. We show how additive imperceptible perturbations can not only change predictions to increase the trajectory drift but also catastrophically alter its geometry. We also study the relation between adversarial perturbations targeting monocular depth and pose estimation networks, as well as the transferability of perturbations to other networks with different architectures and losses. Our experiments show how the generated perturbations lead to notable errors in relative rotation and translation predictions and elucidate vulnerabilities of the networks.</abstract><cop>Ithaca</cop><pub>Cornell University Library, arXiv.org</pub><doi>10.48550/arxiv.2207.07032</doi><oa>free_for_read</oa></addata></record> |
fulltext | fulltext |
identifier | EISSN: 2331-8422 |
ispartof | arXiv.org, 2022-07 |
issn | 2331-8422 |
language | eng |
recordid | cdi_arxiv_primary_2207_07032 |
source | arXiv.org; Free E- Journals |
subjects | Artificial neural networks Computer Science - Artificial Intelligence Computer Science - Computer Vision and Pattern Recognition Computer vision Machine learning Object recognition Perturbation Pose estimation Robotics Semantic segmentation |
title | Adversarial Attacks on Monocular Pose Estimation |
url | https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-01-26T07%3A44%3A15IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-proquest_arxiv&rft_val_fmt=info:ofi/fmt:kev:mtx:journal&rft.genre=article&rft.atitle=Adversarial%20Attacks%20on%20Monocular%20Pose%20Estimation&rft.jtitle=arXiv.org&rft.au=Chawla,%20Hemang&rft.date=2022-07-14&rft.eissn=2331-8422&rft_id=info:doi/10.48550/arxiv.2207.07032&rft_dat=%3Cproquest_arxiv%3E2689954342%3C/proquest_arxiv%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_pqid=2689954342&rft_id=info:pmid/&rfr_iscdi=true |