Weaponizing Reflectivity for Pointcloud Deception with Forged Invisible Geometries
Hengwei Chen, Menglan Hu, Tianyue Zheng
Abstract
Pointcloud perception systems are critical for autonomous driving, robotics, and embodied intelligence. While existing adversarial attack research predominantly focuses on digital manipulations, this paper introduces a novel physicalworld attack, Stride, that strategically disrupts pointcloud classification, segmentation, and object detection by exploiting the walk error, a systematic depth measurement error induced by reflectivity variations. By developing a quantitative model that maps reflectivity variations to depth errors, we demonstrate how infrared-specific dyes, inconspicuous in the visible light spectrum, can systematically manipulate pointcloud representations, fundamentally compromising the reliability of perception algorithms. To this end, our approach presents a physically feasible optimization method for applying inconspicuous coatings that can induce targeted misclassifications, missegmentations, and object detection failures without resorting to digital manipulations. Experiments across LiDAR and depth cameras reveal significant performance degradation in downstream perception tasks, highlighting the profound vulnerabilities of current 3D sensing technologies. These findings underscore the critical need for robust sensing mechanisms capable of withstanding subtle yet strategic physical interventions.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get 98534d35-e6d4-4d6e-bc39-54fcf1353301Related papers
- Can We Use Arbitrary Objects to Attack LiDAR Perception in Autonomous Driving?Yi Zhu, Chenglin Miao, Tianhang Zheng, Foad Hajiaghajani et al.CCS 2021 · 65 citations
- Invisible for both Camera and LiDAR: Security of Multi-Sensor Fusion based Perception in Autonomous Driving Under Physical-World AttacksYulong Cao, Ningfei Wang, Chaowei Xiao, Dawei Yang et al.S&P 2021 · 309 citations
- Physically Realizable Adversarial Examples for LiDAR Object DetectionJames Tu, Mengye Ren, Sivabalan Manivasagam, Ming Liang et al.CVPR 2020
- Towards Real-Time Defense against Object-Based LiDAR Attacks in Autonomous DrivingYan Zhang, Zihao Liu, Yi Zhu, Chenglin MiaoCCS 2025
- PLA-LiDAR: Physical Laser Attacks against LiDAR-based 3D Object Detection in Autonomous VehicleZizhi Jin, Xiaoyu Ji, Yushi Cheng, Bo Yang et al.S&P 2023
