• Home
  • Search
  • Generating Transferable 3D Adversarial Point Cloud via Random Perturbation Factorization
  • Cite Icon26
  • https://doi.org/10.1609/aaai.v37i1.25154Copy DOI Icon

Generating Transferable 3D Adversarial Point Cloud via Random Perturbation Factorization

  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Recent studies have demonstrated that existing deep neural networks (DNNs) on 3D point clouds are vulnerable to adversarial examples, especially under the white-box settings where the adversaries have access to model parameters. However, adversarial 3D point clouds generated by existing white-box methods have limited transferability across different DNN architectures. They have only minor threats in real-world scenarios under the black-box settings where the adversaries can only query the deployed victim model. In this paper, we revisit the transferability of adversarial 3D point clouds. We observe that an adversarial perturbation can be randomly factorized into two sub-perturbations, which are also likely to be adversarial perturbations. It motivates us to consider the effects of the perturbation and its sub-perturbations simultaneously to increase the transferability for sub-perturbations also contain helpful information. In this paper, we propose a simple yet effective attack method to generate more transferable adversarial 3D point clouds. Specifically, rather than simply optimizing the loss of perturbation alone, we combine it with its random factorization. We conduct experiments on benchmark dataset, verifying our method's effectiveness in increasing transferability while preserving high efficiency.

Similar Papers
  • Research Article
  • Citations152

Assessing the Threat of Adversarial Examples on Deep Neural Networks for Remote Sensing Scene Classification: Attacks and Defenses

  • Jun 16, 2020
  • IEEE Transactions on Geoscience and Remote Sensing
  • Yonghao Xu +2
  • Research Article
  • Citations7

INOR—An Intelligent noise reduction method to defend against adversarial audio examples

  • Mar 12, 2020
  • Neurocomputing
  • Qingli Guo +6
  • Research Article
  • Citations4

Local aggressive and physically realizable adversarial attacks on 3D point cloud

  • Oct 18, 2023
  • Computers & Security
  • Zhiyu Chen +5
  • Research Article
  • Citations4

Real-Time Environmental Contour Construction Using 3D LiDAR and Image Recognition with Object Removal

  • Dec 01, 2024
  • Remote Sensing
  • Tzu-Jung Wu +2
  • Research Article
  • Citations1

Stylized Pairing for Robust Adversarial Defense

  • Sep 18, 2022
  • Applied Sciences
  • Dejian Guan +2
  • Research Article
  • Citations3

Remove adversarial perturbations with linear and nonlinear image filters

  • Jan 29, 2022
  • Displays
  • Zhiwei Li +2
  • Conference Article

Adversarial Image Detection for Vision Transformers via Attention Map

  • Aug 11, 2025
  • S Park +2
  • Research Article

Style augmentation domain-universality transferable targeted attack

  • Jul 15, 2025
  • Intelligent Data Analysis: An International Journal
  • Xianmin Wang +4
  • Research Article
  • Citations248

Survey on Deep Neural Networks in Speech and Vision Systems

  • Jul 26, 2020
  • Neurocomputing
  • M Alam +4
  • Research Article
  • Citations15

(AD)[formula omitted]: Adversarial domain adaptation to defense with adversarial perturbation removal

  • Sep 05, 2021
  • Pattern Recognition
  • Keji Han +2
  • Research Article
  • Citations8

Negatively correlated ensemble against transfer adversarial attacks

  • Nov 22, 2024
  • Pattern Recognition
  • Yunce Zhao +3
  • PDF
  • Research Article
  • Citations17

Complete Defense Framework to Protect Deep Neural Networks against Adversarial Examples

  • May 11, 2020
  • Mathematical Problems in Engineering
  • Guangling Sun +5
  • Research Article
  • Citations19

RCA-SOC: A novel adversarial defense by refocusing on critical areas and strengthening object contours

  • May 29, 2020
  • Computers & Security
  • Jinyin Chen +3
  • Conference Article
  • Citations7

FuzzGAN: A Generation-Based Fuzzing Framework for Testing Deep Neural Networks

  • Dec 01, 2022
  • Ge Han +4
  • Conference Article
  • Citations265

GenAttack

  • Jul 13, 2019
  • Moustafa Alzantot +5
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.