A sparse attack method on skeleton-based human action recognition for intelligent metaverse application

Cheng Dai,Yinqin Huang,Wei-Che Chien
DOI: https://doi.org/10.1016/j.future.2022.12.043
IF: 7.307
2023-01-06
Future Generation Computer Systems
Abstract:Graph convolutional networks (GCNs) based skeleton human action recognition has been one of the hottest techniques in intelligent Metaverse system applications in recent years. However, the robustness of GCN model based skeleton action recognition, has not been widely discussed duo to the complex spatio-temporal nature. Base on solving this problem, we propose a sparse attack method with dynamic attention which can generate adversarial samples with lower deviation under the condition of keeping attack success rate in this paper. Firstly, we develop spatial temporal consistency loss which can not only preserve spatial integrity between reference sample and adversarial sample but also keep temporal coherence between consecutive frames across adversarial sample. Then, we develop an interaction-based perturbation contribution analyze method to discard unnecessary perturbations. Besides that, we design a dynamic attention approach to tilt the perturbations towards some joints that have higher dynamics which can decrease overall deviations. Finally, we conduct extensive experiments to evaluate our proposal and the experimental results show that our method contributes to discover potential causes of model fragility and provides material in adversarial training which will increase the robustness of GCN based skeleton human action recognition models.
What problem does this paper attempt to address?