Rethinking Perturbation Directions for Imperceptible Adversarial Attacks on Point Clouds

Keke Tang, Yawen Shi, Tianrui Lou, Weilong Peng, Xu He, Peican Zhu, Zhaoquan Gu, Zhihong Tian

科研成果: 期刊稿件文章同行评审

30 引用 (Scopus)

摘要

Adversarial attacks have been successfully extended to the field of point clouds. Besides applying the common perturbation guided by the gradient, adversarial attacks on point clouds can be conducted by applying directional perturbations, e.g., along normal and along the tangent plane. In this article, we first investigate whether adversarial attacks with these two orthogonal directional perturbations are more imperceptible than that with the gradient-aware perturbation. Second, we investigate the deeper difference between adversarial attacks with these two directional perturbations, and whether they are applicable to the same scenarios. Third, based on the verification results that the above two directional perturbations have different sensitiveness to curvature, we devise a novel normal-tangent attack (NTA) framework with a hybrid directional perturbation scheme that adaptively chooses the direction according to the curvature of the local shape around the point. Extensive experiments on two publicly available data sets, e.g., ModelNet40 and ShapeNet Part, with classifiers in three representative networks, e.g., PointNet++, DGCNN, PointConv, validate the effectiveness of NTA, and the superiority to the state-of-the-art methods.

源语言英语
页(从-至)5158-5169
页数12
期刊IEEE Internet of Things Journal
10
6
DOI
出版状态已出版 - 15 3月 2023

指纹

探究 'Rethinking Perturbation Directions for Imperceptible Adversarial Attacks on Point Clouds' 的科研主题。它们共同构成独一无二的指纹。

引用此