Abstract
Gait recognition has found extensive applications in the field of biometric identification due to its advantages of long-distance and non-contact capabilities. Current research indicates that silhouette-based gait recognition exhibits rich features of human gait. It typically involves spatial feature extraction and gait temporal modeling, achieving widespread utilization with high accuracy. However, silhouette-based gait recognition is vulnerable to adversarial attacks. Adversarial examples are data samples generated by introducing minimal noise to original samples, imperceptible to human vision, yet deep neural networks are highly sensitive to them, leading to misclassification. In response, we propose a defense against adversarial attacks for silhouette-based gait recognition. This method constrains convolutional kernels to emulate the structure of edge detection operators, aiming to enhance edge information in images. The objective is to compel deep neural networks to focus more on semantic information in gait silhouette images and reduce feature deviations induced by adversarial perturbations. The method can significantly improve the adversarial robustness of silhouette-based gait recognition.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
Similar content being viewed by others
References
Fan, C., Liang, J., Shen, C., Hou, S., Huang, Y., Yu, S.: Opengait: Revisiting gait recognition toward better practicality. In: IEEE Conference on Computer Vision and Pattern Recognition, pp. 9707–9716 (2023)
Maqsood, M., Ghazanfar, M.A., Mehmood, I., Hwang, E., Rho, S.: A meta-heuristic optimization based less imperceptible adversarial attack on gait based surveillance systems. J. Signal Process. Syst. 95(2–3), 129–151 (2023)
Jia, X., Zhang, Y., Wu, B., Ma, K., Wang, J., Cao, X.: Las-at: Adversarial training with learnable attack strategy. In: IEEE Conference on Computer Vision and Pattern Recognition, pp. 13398–13408 (2022)
Xie, C., Wu, Y., Maaten, L.v.d., Yuille, A.L., He, K.: Feature denoising for improving adversarial robustness. In: IEEE Conference on Computer Vision and Pattern Recognition, pp. 501–509 (2019)
Papernot, N., McDaniel, P., Wu, X., Jha, S., Swami, A.: Distillation as a defense to adversarial perturbations against deep neural networks. In: IEEE Symposium on Security and Privacy (SP), pp. 582–597 (2016)
Goodfellow, I.J., Shlens, J., Szegedy, C.: Explaining and harnessing adversarial examples. In: International Conference on Learning Representations (ICLR). San Diego (2015)
Szegedy, C., et al.: Intriguing properties of neural networks. In: International Conference on Learning Representations (ICLR) (2014)
Carlini, N., Wagner, D.: Towards evaluating the robustness of neural networks. In: IEEE Symposium on Security and Privacy (SP), pp. 39–57 (2017)
Wang, Z., Tang, C.: Model-based gait recognition using graph network on very large population database. arXiv preprint arXiv:2112.10305 (2021)
Hou, S., Fan, C., Cao, C., Liu, X., Huang, Y.: A comprehensive study on the evaluation of silhouette-based gait recognition. IEEE Trans. Biometrics, Behav. Ident. Sci. 5(2), 196–208 (2023)
Liao, R., Yu, S., An, W., Huang, Y.: A model-based gait recognition method with body pose and human prior knowledge. Pattern Recogn. 98, 107069 (2020)
Li, X., Makihara, Y., Xu, C., Yagi, Y., Yu, S., Ren, M.: End-to-end model-based gait recognition. In: Proceedings of the Asian Conference on Computer Vision (2020)
Loper, M., Mahmood, N., Romero, J., Pons-Moll, G., Black, M.J.: Smpl: a skinned multi-person linear model. ACM Trans. Graph. 34(6), 1–16 (2015)
Teepe, T., Khan, A., Gilg, J., Herzog, F., Hormann, S., Rigoll, G.: Gaitgraph: graph convolutional network for skeleton-based gait recognition. In: IEEE International Conference on Image Processing, pp. 2314–2318 (2021)
Han, J., Bhanu, B.: Individual recognition using gait energy image. IEEE Trans. Pattern Anal. Mach. Intell. 28(2), 316–322 (2006)
Chao, H., He, Y., Zhang, J., Feng, J.: Gaitset: Regarding gait as a set for cross-view gait recognition. In: AAAI Conference on Artificial Intelligence, pp. 8126–8133 (2019)
Fan, C., et al.: Gaitpart: temporal part-based model for gait recognition. In: IEEE Conference on Computer Vision and Pattern Recognition, pp. 14225–14233 (2020)
Lin, B., Zhang, S., Yu, X.: Gait recognition via effective global-local feature representation and local temporal aggregation. In: IEEE International Conference on Computer Vision, pp. 14648–14656 (2021)
Kurakin, A., Goodfellow, I.J., Bengio, S.: Adversarial examples in the physical world. In: Artificial Intelligence Safety and Security, pp. 99–112. Chapman and Hall/CRC (2018)
Madry, A., Makelov, A., Schmidt, L., Tsipras, D., Vladu, A.: Towards deep learning models resistant to adversarial attacks. In: International Conference on Learning Representations (2018)
Croce, F., Hein, M.: Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks. In: International Conference on Machine Learning, pp. 2206–2216. PMLR (2020)
Sehwag, V., Mahloujifar, S., Handina, T., et al.: Robust learning meets generative models: Can proxy distributions improve adversarial robustness? arXiv preprint arXiv:2104.09425 (2021)
Huang, B., Chen, M., Wang, Y., Lu, J., Cheng, M.M., Wang, W.: Boosting accuracy and robustness of student models via adaptive adversarial distillation. In: IEEE Conference on Computer Vision and Pattern Recognition, pp. 24668–24677 (2023)
He, Z., Wang, W., Dong, J., Tan, T.: Temporal sparse adversarial attack on sequence-based gait recognition. Pattern Recogn. 133, 109028 (2023)
Maqsood, M., et al.: An autonomous decision-making framework for gait recognition systems against adversarial attack using reinforcement learning. ISA Trans. 132, 80–93 (2023)
Singh, S., Singh, R.: Comparison of various edge detection techniques. In: 2015 2nd International Conference on Computing for Sustainable Global Development (INDIACom), pp. 393–396. IEEE (2015)
Simonyan, K., Zisserman, A.: Very deep convolutional networks for large-scale image recognition. In: International Conference on Learning Representations (2014)
Szegedy, C., Vanhoucke, V., Ioffe, S., Shlens, J., Wojna, Z.: Rethinking the inception architecture for computer vision. In: IEEE Conference on Computer Vision and Pattern Recognition, pp. 4700–4708 (2016)
He, K., Zhang, X., Ren, S., Sun, J.: Deep residual learning for image recognition. In: IEEE Conference on Computer Vision and Pattern Recognition, pp. 770–778 (2016)
Zagoruyko, S., Komodakis, N.: Wide residual networks. In: British Machine Vision Conference, pp. 1–16 (2016)
Huang, G., Liu, Z., Maaten, L.D., Weinberger, K.Q.: Densely connected convolutional networks. In: IEEE Conference on Computer Vision and Pattern Recognition, pp. 4700–4708 (2017)
Author information
Authors and Affiliations
Corresponding author
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2024 The Author(s), under exclusive license to Springer Nature Singapore Pte Ltd.
About this paper
Cite this paper
Ji, B., Chen, X., Yang, W., Zhu, F. (2024). Boosting Robustness of Silhouette-Based Gait Recognition Against Adversarial Attacks. In: Huang, DS., Zhang, X., Guo, J. (eds) Advanced Intelligent Computing Technology and Applications. ICIC 2024. Lecture Notes in Computer Science, vol 14866. Springer, Singapore. https://doi.org/10.1007/978-981-97-5594-3_7
Download citation
DOI: https://doi.org/10.1007/978-981-97-5594-3_7
Published:
Publisher Name: Springer, Singapore
Print ISBN: 978-981-97-5593-6
Online ISBN: 978-981-97-5594-3
eBook Packages: Computer ScienceComputer Science (R0)