论文标题
滚动颜色:对抗激光利用交通信号灯识别
Rolling Colors: Adversarial Laser Exploits against Traffic Light Recognition
论文作者
论文摘要
交通信号识别对于城市地区完全自主驾驶至关重要。在本文中,我们通过对相机上的激光干扰来调查欺骗交通灯识别机制的可行性。通过利用CMOS传感器的滚动快门,我们设法在图像中的交通信号灯上注入了颜色条纹,这可能会导致红灯被识别为绿灯,反之亦然。为了提高成功率,我们设计了一种优化方法,以基于激光干扰的经验模型来搜索有效的激光参数。我们对2个最先进的识别系统和5个相机的模拟和现实设置进行评估报告,红色到绿色和绿色攻击的最大成功率为30%和86.25%。我们观察到,这次攻击在40多米外的连续框架内有效地击针对移动的车辆,这可能会对自动驾驶产生端到端的影响,例如运行红灯或紧急停止。为了减轻威胁,我们建议重新设计滚动快门机构。
Traffic light recognition is essential for fully autonomous driving in urban areas. In this paper, we investigate the feasibility of fooling traffic light recognition mechanisms by shedding laser interference on the camera. By exploiting the rolling shutter of CMOS sensors, we manage to inject a color stripe overlapped on the traffic light in the image, which can cause a red light to be recognized as a green light or vice versa. To increase the success rate, we design an optimization method to search for effective laser parameters based on empirical models of laser interference. Our evaluation in emulated and real-world setups on 2 state-of-the-art recognition systems and 5 cameras reports a maximum success rate of 30% and 86.25% for Red-to-Green and Green-to-Red attacks. We observe that the attack is effective in continuous frames from more than 40 meters away against a moving vehicle, which may cause end-to-end impacts on self-driving such as running a red light or emergency stop. To mitigate the threat, we propose redesigning the rolling shutter mechanism.