SAGA: Spectral Adversarial Geometric Attack on 3D Meshes
Tomer Stolik, Itai Lang, Shai Avidan
Abstract
A triangular mesh is one of the most popular 3D data representations. As such, the deployment of deep neural networks for mesh processing is widely spread and is increasingly attracting more attention. However, neural networks are prone to adversarial attacks, where carefully crafted inputs impair the model's functionality. The need to explore these vulnerabilities is a fundamental factor in the future development of 3D-based applications. Recently, mesh attacks were studied on the semantic level, where classifiers are misled to produce wrong predictions. Nevertheless, mesh surfaces possess complex geometric attributes beyond their semantic meaning, and their analysis often includes the need to encode and reconstruct the geometry of the shape. We propose a novel framework for a geometric adversarial attack on a 3D mesh autoencoder. In this setting, an adversarial input mesh deceives the autoencoder by forcing it to reconstruct a different geometric shape at its output. The malicious input is produced by perturbing a clean shape in the spectral domain. Our method leverages the spectral decomposition of the mesh along with additional mesh-related properties to obtain visually credible results that consider the delicacy of surface distortions 1 .
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 5688f95b-985d-4709-9c6e-3adb6bcb79c2Builds on7
- Towards Evaluating the Robustness of Neural NetworksNicholas Carlini, David A. WagnerS&P 2017 · 9,786 citations
- Neural 3D Morphable Models: Spiral Convolutional Networks for 3D Shape Representation Learning and GenerationGiorgos Bouritsas, Sergiy Bokhnyak, Stylianos Ploumpis, Stefanos Zafeiriou et al.ICCV 2019 · 187 citations
- Fully Convolutional Mesh Autoencoder using Efficient Spatially Varying KernelsYi Zhou, Chenglei Wu, Zimo Li, Chen Cao et al.NeurIPS 2020 · 98 citations
- Shape-invariant 3D Adversarial Point CloudsQidong Huang, Xiaoyi Dong, Dongdong Chen, Hang Zhou et al.CVPR 2022 · 88 citations
- DiscoNet: Shapes Learning on Disconnected Manifolds for 3D EditingÉloi Mehr, Ariane Jourdan, Nicolas Thome, Matthieu Cord et al.ICCV 2019 · 40 citations
Related papers
- Random Walks for Adversarial MeshesAmir Belder, Gal Yefet, Ran Ben Izhak, Ayellet TalSIGGRAPH 2022 · 2 citations
- Universal Spectral Adversarial Attacks for Deformable ShapesArianna Rampini, Franco Pestarini, Luca Cosmo, Simone Melzi et al.CVPR 2021
- ExMeshCNN: An Explainable Convolutional Neural Network Architecture for 3D Shape AnalysisSeonggyeom Kim, Dong-Kyu ChaeKDD 2022 · 13 citations
- Explicitly Perceiving and Preserving the Local Geometric Structures for 3D Point Cloud AttackDaizong Liu, Wei HuAAAI 2024 · 22 citations
- Robust Adversarial Objects against Deep Learning ModelsTzungyu Tsai, Kaichen Yang, Tsung-Yi Ho, Yier JinAAAI 2020 · 167 citations
