Physical 3D Adversarial Attacks against Monocular Depth Estimation in Autonomous Driving
Deep learning-based monocular depth estimation (MDE), extensively applied in autonomous driving, is known to be vulnerable to adversarial attacks. Previous physical attacks against MDE models rely on 2D adversarial patches, so they only affect a small, localized region in the MDE map but fail under various viewpoints. To address these limitations, we propose 3D Depth Fool (3D$^2$Fool), the first 3D texture-based adversarial attack against MDE models. 3D$^2$Fool is specifically optimized to generate 3D adversarial textures agnostic to model types of vehicles and to have improved robustness in bad weather conditions, such as rain and fog. Experimental results validate the superior performance of our 3D$^2$Fool across various scenarios, including vehicles, MDE models, weather conditions, and viewpoints. Real-world experiments with printed 3D textures on physical vehicle models further demonstrate that our 3D$^2$Fool can cause an MDE error of over 10 meters.
Code (1)
Tasks
Adversarial AttackAutonomous DrivingDepth EstimationMonocular Depth EstimationSimilar Papers 제목 키워드 기반
Adversarial Training of Self-supervised Monocular Depth Estimation against Physical-World Attacks
Monocular Depth Estimation (MDE) is a critical component in applications such as autonomous driving. There are various attacks against MDE networks. These attacks, especially the physical ones, pose a great threat to the…
Adversarial RobustnessAutonomous DrivingContrastive LearningDepth Estimation+1Self-supervised Adversarial Training of Monocular Depth Estimation against Physical-World Attacks
Monocular Depth Estimation (MDE) plays a vital role in applications such as autonomous driving. However, various attacks target MDE models, with physical attacks posing significant threats to system security. Traditional…
Adversarial RobustnessAutonomous DrivingContrastive LearningDepth Estimation+1Physical Adversarial Attack on Monocular Depth Estimation via Shape-Varying Patches
Adversarial attacks against monocular depth estimation (MDE) systems pose significant challenges, particularly in safety-critical applications such as autonomous driving. Existing patch-based adversarial attacks for MDE …
Adversarial AttackAutonomous DrivingDepth EstimationMonocular Depth EstimationAdversarial Patch Attacks on Monocular Depth Estimation Networks
Thanks to the excellent learning capability of deep convolutional neural networks (CNN), monocular depth estimation using CNNs has achieved great success in recent years. However, depth estimation from a monocular image …
Adversarial AttackDepth EstimationMonocular Depth EstimationBadDepth: Backdoor Attacks Against Monocular Depth Estimation in the Physical World
In recent years, deep learning-based Monocular Depth Estimation (MDE) models have been widely applied in fields such as autonomous driving and robotics. However, their vulnerability to backdoor attacks remains unexplored…
Autonomous DrivingBackdoor AttackDepth CompletionDepth Estimation+3