IF-Defense: 3D Adversarial Point Cloud Defense via Implicit Function based Restoration

10/11/2020
by   Ziyi Wu, et al.
6

Point cloud is an important 3D data representation widely used in many essential applications. Leveraging deep neural networks, recent works have shown great success in processing 3D point clouds. However, those deep neural networks are vulnerable to various 3D adversarial attacks, which can be summarized as two primary types: point perturbation that affects local point distribution, and surface distortion that causes dramatic changes in geometry. In this paper, we propose a novel 3D adversarial point cloud defense method leveraging implicit function based restoration (IF-Defense) to address both the aforementioned attacks. It is composed of two steps: 1) it predicts an implicit function that captures the clean shape through a surface recovery module, and 2) restores a clean and complete point cloud via minimizing the difference between the attacked point cloud and the predicted implicit function under geometry- and distribution- aware constraints. Our experimental results show that IF-Defense achieves the state-of-the-art defense performance against all existing adversarial attacks on PointNet, PointNet++, DGCNN and PointConv. Comparing with previous methods, IF-Defense presents 20.02 classification accuracy against salient point dropping attack and 16.29 against LG-GAN attack on PointNet.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
01/26/2022

Boosting 3D Adversarial Attacks with Attacking On Frequency

Deep neural networks (DNNs) have been shown to be vulnerable to adversar...
research
02/28/2019

Adversarial Attack and Defense on Point Sets

Emergence of the utility of 3D point cloud data in critical vision tasks...
research
10/07/2021

Adversarial Attack by Limited Point Cloud Surface Modifications

Recent research has revealed that the security of deep neural networks t...
research
03/29/2022

Robust Structured Declarative Classifiers for 3D Point Clouds: Defending Adversarial Attacks with Implicit Gradients

Deep neural networks for 3D point cloud classification, such as PointNet...
research
05/19/2021

Local Aggressive Adversarial Attacks on 3D Point Cloud

Deep neural networks are found to be prone to adversarial examples which...
research
04/07/2021

The art of defense: letting networks fool the attacker

Some deep neural networks are invariant to some input transformations, s...
research
08/17/2022

Imperceptible and Robust Backdoor Attack in 3D Point Cloud

With the thriving of deep learning in processing point cloud data, recen...

Please sign up or login with your details

Forgot password? Click here to reset