Multi-view Correlation based Black-box Adversarial Attack for 3D Object Detection

对抗制 点云 计算机科学 激光雷达 人工智能 深度学习 对象(语法) 目标检测 计算机视觉 光学(聚焦) 分割 图像分割 遥感 地理 物理 光学
作者
Bingyu Liu,Yuhong Guo,Jianan Jiang,Jian Tang,Weihong Deng
出处
期刊:Knowledge Discovery and Data Mining 卷期号:: 1036-1044 被引量:2
标识
DOI:10.1145/3447548.3467432
摘要

Deep neural networks have made tremendous progress in 3D object detection, which is an important task especially in autonomous driving scenarios. Benefited from the breakthroughs in deep learning and sensor technologies, 3D object detection methods based on different sensors, such as camera and LiDAR, have developed rapidly. Meanwhile, more and more researches notice that the abundant information contained in the multi-view data can be used to obtain more accurate understanding of the 3D surrounding environment. Therefore, many sensor-fusion 3D object detection methods have been proposed. As safety is critical in autonomous driving and the deep neural networks are known to be vulnerable to adversarial examples with visually imperceptible perturbations, it is significant to investigate adversarial attacks for 3D object detection. Recent works have shown that both image-based and LiDAR-based networks can be attacked by the adversarial examples while the attacks to the sensor-fusion models, which tend to be more robust, haven't been studied. To this end, we propose a simple multi-view correlation based adversarial attack method for the camera-LiDAR fusion 3D object detection models and focus on the black-box attack setting which is more practical in real-world systems. Specifically, we first design a generative network to generate image adversarial examples based on an auxiliary image semantic segmentation network. Then, we develop a cross-view perturbation projection method by exploiting the camera-LiDAR correlations to map each image adversarial example to the space of the point cloud data to form the point cloud adversarial examples in the LiDAR view. Extensive experiments on the KITTI dataset demonstrate the effectiveness of the proposed method.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
周琦发布了新的文献求助10
2秒前
Shuhe_Gong完成签到 ,获得积分10
2秒前
量子星尘发布了新的文献求助10
3秒前
8秒前
8秒前
9秒前
9秒前
9秒前
mmd完成签到 ,获得积分10
11秒前
11秒前
11秒前
12秒前
瘦瘦的枫叶完成签到 ,获得积分10
12秒前
aaiirrii完成签到,获得积分10
12秒前
13秒前
Bkang完成签到,获得积分10
14秒前
14秒前
14秒前
冷言发布了新的文献求助30
15秒前
大脸猫完成签到 ,获得积分10
16秒前
乞明完成签到 ,获得积分10
16秒前
16秒前
16秒前
17秒前
17秒前
背书强完成签到 ,获得积分10
17秒前
量子星尘发布了新的文献求助10
17秒前
只争朝夕应助洁净之玉采纳,获得10
17秒前
18秒前
18秒前
18秒前
18秒前
18秒前
18秒前
19秒前
19秒前
19秒前
19秒前
19秒前
19秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Aerospace Standards Index - 2026 ASIN2026 3000
Polymorphism and polytypism in crystals 1000
Signals, Systems, and Signal Processing 610
Discrete-Time Signals and Systems 610
Research Methods for Business: A Skill Building Approach, 9th Edition 500
Social Work and Social Welfare: An Invitation(7th Edition) 410
热门求助领域 (近24小时)
化学 材料科学 医学 生物 工程类 纳米技术 有机化学 物理 生物化学 化学工程 计算机科学 复合材料 内科学 催化作用 光电子学 物理化学 电极 冶金 遗传学 细胞生物学
热门帖子
关注 科研通微信公众号,转发送积分 6051321
求助须知:如何正确求助?哪些是违规求助? 7859022
关于积分的说明 16267625
捐赠科研通 5196359
什么是DOI,文献DOI怎么找? 2780596
邀请新用户注册赠送积分活动 1763538
关于科研通互助平台的介绍 1645561