AI RESEARCH

Hard-Label Black-Box Attacks on 3D Point Clouds

arXiv CS.CV

ArXi:2412.00404v2 Announce Type: replace With the maturity of depth sensors in various 3D safety-critical applications, 3D point cloud models have been shown to be vulnerable to adversarial attacks. Almost all existing 3D attackers simply follow the white-box or black-box setting to iteratively update coordinate perturbations based on back-propagated or estimated gradients. However, these methods are hard to deploy in real-world scenarios (no model details are provided) as they severely rely on parameters or output logits of victim models.