PAGN: perturbation adaption generation network for point cloud adversarial defense

Qi Liang,Qiang Li,Weizhi Nie,An-An Liu
DOI: https://doi.org/10.1007/s00530-022-00887-w
IF: 3.9
2022-01-20
Multimedia Systems
Abstract:With the development of point cloud processing technology, the point cloud has been applied to many applications such as autonomous driving, scene reconstruction, and object detection. These applications are safety-critical applications and very important to our life. However, the research of 3D model adversarial attacks got rare attention in recent years. It is important to study how to improve the adversarial robustness of the 3D data processing model based on adversarial training. In this paper, we propose a novel perturbation adaption generation network for point cloud adversarial defense, which can adaptively generate adversarial point cloud samples according to the point cloud to improve the robustness of the deep learning model for the 3D model classification. Specifically, we apply the content similarity measure method to avoid the over perturbation to guarantee that the distortion of the adversarial sample is within an acceptable range. Finally, extensive experiments based on different attack methods on ModelNet40 demonstrate the effectiveness of our approach.
computer science, information systems, theory & methods
What problem does this paper attempt to address?