跳到主要导航 跳到搜索 跳到主要内容

FAGA: Feature-Level Gradient Momentum Attack for Transferable 3D Adversarial Point Clouds

  • Guangzhou University

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

While widely employed in 3D applications like virtual reality (VR) and autonomous driving, neural networks for point cloud processing have demonstrated an alarming vulnerability to adversarial attacks, particularly under blackbox settings. Among black-box attacks, transfer-based methods craft adversarial examples on a surrogate model with high transferability to multiple victim models, making them well-suited for realistic scenarios and essential for robustness assessment. However, current transfer-based 3D adversarial attack methods often over-rely on the surrogate model and become trapped in local optima, resulting in degraded transferability. To address this limitation, we propose a novel framework, the FeAturelevel Gradient momentum Attack (FAGA), which generates adversarial examples by directly perturbing the intermediate features of the surrogate model to produce more generalized cross-model attacks. We observe that gradients from individual optimization steps tend to overfit the surrogate model, resulting in sub-optimal transferability. Thus we employ a gradient momentum mechanism that accumulates historical gradients, producing smoother, more stable, and highly generalizable feature gradients. Additionally, we introduce a dynamic soft labeling strategy that regularizes the optimization process, guiding the adversarial examples to settle in broader and flatter regions of the loss landscape, thereby mitigating overfitting. Extensive experiments demonstrate that FAGA significantly outperforms existing state-of-the-art methods.

源语言英语
主期刊名Proceedings - 2025 International Conference on Virtual Reality and Visualization, ICVRV 2025
出版商Institute of Electrical and Electronics Engineers Inc.
618-623
页数6
ISBN(电子版)9798331556297
DOI
出版状态已出版 - 2025
活动2025 International Conference on Virtual Reality and Visualization, ICVRV 2025 - Bogota, 哥伦比亚
期限: 19 12月 202521 12月 2025

出版系列

姓名Proceedings - 2025 International Conference on Virtual Reality and Visualization, ICVRV 2025

会议

会议2025 International Conference on Virtual Reality and Visualization, ICVRV 2025
国家/地区哥伦比亚
Bogota
时期19/12/2521/12/25

指纹

探究 'FAGA: Feature-Level Gradient Momentum Attack for Transferable 3D Adversarial Point Clouds' 的科研主题。它们共同构成独一无二的指纹。

引用此