Abstract
Unsupervised domain adaptation (UDA) frameworks have shown goodgeneralization capabilities for 3D point cloud semantic segmentation models onclean data. However, existing works overlook adversarial robustness when thesource domain itself is compromised. To comprehensively explore the robustnessof the UDA frameworks, we first design a stealthy adversarial point cloudgeneration attack that can significantly contaminate datasets with only minorperturbations to the point cloud surface. Based on that, we propose a noveldataset, AdvSynLiDAR, comprising synthesized contaminated LiDAR point clouds.With the generated corrupted data, we further develop the AdversarialAdaptation Framework (AAF) as the countermeasure. Specifically, by extendingthe key point sensitive (KPS) loss towards the Robust Long-Tail loss (RLT loss)and utilizing a decoder branch, our approach enables the model to focus onlong-tail classes during the pre-training phase and leverages high-confidencedecoded point cloud information to restore point cloud structures during theadaptation phase. We evaluated our AAF method on the AdvSynLiDAR dataset, wherethe results demonstrate that our AAF method can mitigate performancedegradation under source adversarial perturbations for UDA in the 3D pointcloud segmentation application.