Random Walks for Adversarial Meshes
DescriptionWe propose a novel, unified, and general adversarial attack, which leads to misclassification of numerous SOTA mesh classification neural networks. The attack is black-box, having access only to the network’s predictions but not to its architecture or gradients. The key idea is to learn to imitate a given classification network.