Papers
Topics
Authors
Recent
Gemini 2.5 Flash
Gemini 2.5 Flash
41 tokens/sec
GPT-4o
59 tokens/sec
Gemini 2.5 Pro Pro
41 tokens/sec
o3 Pro
7 tokens/sec
GPT-4.1 Pro
50 tokens/sec
DeepSeek R1 via Azure Pro
28 tokens/sec
2000 character limit reached

Defense-PointNet: Protecting PointNet Against Adversarial Attacks (2002.11881v1)

Published 27 Feb 2020 in cs.CV, cs.LG, and eess.IV

Abstract: Despite remarkable performance across a broad range of tasks, neural networks have been shown to be vulnerable to adversarial attacks. Many works focus on adversarial attacks and defenses on 2D images, but few focus on 3D point clouds. In this paper, our goal is to enhance the adversarial robustness of PointNet, which is one of the most widely used models for 3D point clouds. We apply the fast gradient sign attack method (FGSM) on 3D point clouds and find that FGSM can be used to generate not only adversarial images but also adversarial point clouds. To minimize the vulnerability of PointNet to adversarial attacks, we propose Defense-PointNet. We compare our model with two baseline approaches and show that Defense-PointNet significantly improves the robustness of the network against adversarial samples.

User Edit Pencil Streamline Icon: https://streamlinehq.com
Authors (4)
  1. Yu Zhang (1399 papers)
  2. Gongbo Liang (16 papers)
  3. Tawfiq Salem (7 papers)
  4. Nathan Jacobs (70 papers)
Citations (25)