PointCA: Evaluating the Robustness of 3D Point Cloud Completion Models Against Adversarial Examples

11/22/2022
by   Shengshan Hu, et al.
0

Point cloud completion, as the upstream procedure of 3D recognition and segmentation, has become an essential part of many tasks such as navigation and scene understanding. While various point cloud completion models have demonstrated their powerful capabilities, their robustness against adversarial attacks, which have been proven to be fatally malicious towards deep neural networks, remains unknown. In addition, existing attack approaches towards point cloud classifiers cannot be applied to the completion models due to different output forms and attack purposes. In order to evaluate the robustness of the completion models, we propose PointCA, the first adversarial attack against 3D point cloud completion models. PointCA can generate adversarial point clouds that maintain high similarity with the original ones, while being completed as another object with totally different semantic information. Specifically, we minimize the representation discrepancy between the adversarial example and the target point set to jointly explore the adversarial point clouds in the geometry space and the feature space. Furthermore, to launch a stealthier attack, we innovatively employ the neighbourhood density information to tailor the perturbation constraint, leading to geometry-aware and distribution-adaptive modifications for each point. Extensive experiments against different premier point cloud completion networks show that PointCA can cause a performance degradation from 77.9 distance kept below 0.01. We conclude that existing completion models are severely vulnerable to adversarial examples, and state-of-the-art defenses for point cloud classification will be partially invalid when applied to incomplete and uneven point cloud data.

READ FULL TEXT

page 10

page 13

research
08/27/2020

Minimal Adversarial Examples for Deep Learning on 3D Point Clouds

With the recent developments of convolutional neural networks, deep lear...
research
07/31/2023

Benchmarking and Analyzing Robust Point Cloud Recognition: Bag of Tricks for Defending Adversarial Examples

Deep Neural Networks (DNNs) for 3D point cloud recognition are vulnerabl...
research
09/21/2021

3D Point Cloud Completion with Geometric-Aware Adversarial Augmentation

With the popularity of 3D sensors in self-driving and other robotics app...
research
03/17/2022

UWED: Unsigned Distance Field for Accurate 3D Scene Representation and Completion

Scene Completion is the task of completing missing geometry from a parti...
research
01/27/2023

PCV: A Point Cloud-Based Network Verifier

3D vision with real-time LiDAR-based point cloud data became a vital par...
research
11/28/2018

Learning Saliency Maps for Adversarial Point-Cloud Generation

3D point-cloud recognition with deep neural network (DNN) has received r...
research
03/17/2020

Energy-Based Processes for Exchangeable Data

Recently there has been growing interest in modeling sets with exchangea...

Please sign up or login with your details

Forgot password? Click here to reset