基于多视图网络三维形状检索的通用扰动攻击 |
| |
作者姓名: | 唐静 彭伟龙 唐可可 方美娥 |
| |
作者单位: | 广州大学计算机科学与网络工程学院,广东 广州 510006 |
| |
基金项目: | 广州市科技计划项目;国家自然科学基金;广州大学校内科研人才培育项目 |
| |
摘 要: | 几何深度学习模型在三维形状检索任务中已应用,其安全评估工作也引起了研究者们的关注。
该文针对三维形状检索评估提出一种基于多视图通用扰动攻击(MvUPA)的对抗攻击方法,其具有高成功率的攻
击效果。首先设计多视角深度全景图检索模型,训练适用于视图类三维形状检索的高效嵌入向量;其次,为三
维形状检索提出有益于通用扰动更新的损失函数方案和攻击机制。该损失函数方案同时融合了三元损失和标签
损失,提升了对相近拓扑异类样本和差异拓扑同类样本的对抗扰动生成。通过实验验证了 MvUPA 在多个视图
类检索模型上攻击的有效性和稳定性,攻击指标下降率(DR)最高达 94.52%;融合损失函数相比单个损失函数
DR 指标提高约 3.0%~5.5%。
|
关 键 词: | 三维形状检索 多视图通用扰动攻击 通用扰动攻击 几何深度学习 融合损失 |
MvUPA: universal perturbation attack against 3D shape retrieval based on multi-view networks |
| |
Authors: | TANG Jing PENG Wei-long TANG Ke-ke FANG Mei-e |
| |
Affiliation: | School of Computer Science and Cyber Engineering, Guangzhou University, Guangzhou Guangdong 510006, China |
| |
Abstract: | Geometric deep learning models have been applied in 3D shape retrieval task successfully, and their
security evaluation is also drawing the attention of researchers. This paper proposed a method of multi-view universal
perturbation attack (MvUPA) for 3D shape retrieval evaluation, so as to generate perturbed samples with a higher
success rate of attack. Firstly, a multi-view depth panoramic map-based network was designed to train an efficient
embedding representation for multi-view 3D shape retrieval. Secondly, a fusion loss function and its attack
mechanism beneficial to multi-input UPA was proposed. The loss function combined triplet loss and label loss,
thereby improving the perturbation generation for different categories of samples with similar topology and same
category samples with different topology. The experiments validated the attack effectiveness and stability of MvUPA
on multi-view retrieval models. MvUPA brought the decrease rate (DR) up to 94.52%, and the DR of the fused loss
function was about 3.0%–5.5% higher than that of a single loss function. |
| |
Keywords: | 3D shape retrieval multi-view universal perturbation attack universal perturbation attack geometric deep learning fusion loss |
本文献已被 万方数据 等数据库收录! |
| 点击此处可从《》浏览原始摘要信息 |
|
点击此处可从《》下载全文 |