Verifying Adversarial Robustness of 3D Object Detectors for Autonomous Vehicles
Verifying Adversarial Robustness of 3D Object Detectors for Autonomous Vehicles
复制标题
DOI:
10.1109/urtc56832.2022.10002253
复制
发表时间:
2022-09
期刊:
影响因子:
--
通讯作者:
Rebecca Dollahite;Kevin Wang;Kaidong Li;Yiqing Zhang;Ziming Zhang
中科院分区:
文献类型:
--
作者:
Rebecca Dollahite;Kevin Wang;Kaidong Li;Yiqing Zhang;Ziming Zhang
Leading 3D object detectors for automated vehicles, such as PIXOR, do not robustly account for noise and are vulnerable to adversarial attacks. Existing attack methods do not accurately simulate naturally occurring noise, as they attempt to continuously on a discrete input space. In this paper, we propose a novel attack method, which maximizes loss by making gradient-informed, discrete changes. A subset of points within an image move based on a percentage change between the original and new gradient. We measure the validity of an attack based on its visual similarity to the original point cloud and numeric metrics.