Adversarial Machine Learning Attacks Against Video Anomaly Detection Systems

Furkan Mumcu,Keval Doshi,Yasin Yilmaz
DOI: https://doi.org/10.48550/arXiv.2204.03141
2022-04-07
Abstract:Anomaly detection in videos is an important computer vision problem with various applications including automated video surveillance. Although adversarial attacks on image understanding models have been heavily investigated, there is not much work on adversarial machine learning targeting video understanding models and no previous work which focuses on video anomaly detection. To this end, we investigate an adversarial machine learning attack against video anomaly detection systems, that can be implemented via an easy-to-perform cyber-attack. Since surveillance cameras are usually connected to the server running the anomaly detection model through a wireless network, they are prone to cyber-attacks targeting the wireless connection. We demonstrate how Wi-Fi deauthentication attack, a notoriously easy-to-perform and effective denial-of-service (DoS) attack, can be utilized to generate adversarial data for video anomaly detection systems. Specifically, we apply several effects caused by the Wi-Fi deauthentication attack on video quality (e.g., slow down, freeze, fast forward, low resolution) to the popular benchmark datasets for video anomaly detection. Our experiments with several state-of-the-art anomaly detection models show that the attackers can significantly undermine the reliability of video anomaly detection systems by causing frequent false alarms and hiding physical anomalies from the surveillance system.
Computer Vision and Pattern Recognition,Artificial Intelligence
What problem does this paper attempt to address?
The problem that this paper attempts to solve is the adversarial machine - learning attacks in video anomaly detection systems. Specifically, the authors focus on how to generate adversarial data against video anomaly detection systems through a network attack that is easy to carry out - the Wi - Fi de - authentication attack. This attack can cause quality problems in the video stream such as a drop in frame rate, a frozen picture, fast - forwarding, and a reduction in resolution, etc., which can significantly affect the performance of the video anomaly detection system, resulting in frequent false alarms or hiding actually occurring abnormal events. The paper shows the impact of these attacks on several state - of - the - art video anomaly detection models and explores how to use these attacks to hide physically abnormal activities such as theft. Through this research, the authors reveal the security vulnerabilities of current video anomaly detection systems when facing specific types of network attacks and emphasize the importance of developing corresponding defense mechanisms.