Comprehensive Evaluation of Deepfake Detection Models: Accuracy, Generalization, and Resilience to Adversarial Attacks

被引:0
|
作者
Abbasi, Maryam [1 ]
Vaz, Paulo [2 ]
Silva, Jose [2 ]
Martins, Pedro [2 ]
机构
[1] Polytech Coimbra, Appl Res Inst, P-3045093 Coimbra, Portugal
[2] Polytech Viseu, Res Ctr Digital Serv CISeD, P-3504510 Viseu, Portugal
来源
APPLIED SCIENCES-BASEL | 2025年 / 15卷 / 03期
关键词
deepfakes; deep learning; XCeption; ResNet; VGG; DFDC; FaceForensics plus plus; adversarial robustness; detection models; MANIPULATION;
D O I
10.3390/app15031225
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
The rise of deepfakes-synthetic media generated using artificial intelligence-threatens digital content authenticity, facilitating misinformation and manipulation. However, deepfakes can also depict real or entirely fictitious individuals, leveraging state-of-the-art techniques such as generative adversarial networks (GANs) and emerging diffusion-based models. Existing detection methods face challenges with generalization across datasets and vulnerability to adversarial attacks. This study focuses on subsets of frames extracted from the DeepFake Detection Challenge (DFDC) and FaceForensics++ videos to evaluate three convolutional neural network architectures-XCeption, ResNet, and VGG16-for deepfake detection. Performance metrics include accuracy, precision, F1-score, AUC-ROC, and Matthews Correlation Coefficient (MCC), combined with an assessment of resilience to adversarial perturbations via the Fast Gradient Sign Method (FGSM). Among the tested models, XCeption achieves the highest accuracy (89.2% on DFDC), strong generalization, and real-time suitability, while VGG16 excels in precision and ResNet provides faster inference. However, all models exhibit reduced performance under adversarial conditions, underscoring the need for enhanced resilience. These findings indicate that robust detection systems must consider advanced generative approaches, adversarial defenses, and cross-dataset adaptation to effectively counter evolving deepfake threats.
引用
收藏
页数:16
相关论文
共 50 条
  • [31] Rigorous Evaluation of Machine Learning-based Intrusion Detection Against Adversarial Attacks
    Gungor, Onat
    Li, Elvin
    Shang, Zhengli
    Guo, Yutong
    Chen, Jing
    Davis, Johnathan
    Rosing, Tajana
    2024 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE, CSR, 2024, : 152 - 158
  • [32] Evaluating Realistic Adversarial Attacks against Machine Learning Models for Windows PE Malware Detection
    Imran, Muhammad
    Appice, Annalisa
    Malerba, Donato
    FUTURE INTERNET, 2024, 16 (05)
  • [33] AdIoTack: Quantifying and refining resilience of decision tree ensemble inference models against adversarial volumetric attacks on IoT networks
    Pashamokhtari, Arman
    Batista, Gustavo
    Gharakheili, Hassan Habibi
    COMPUTERS & SECURITY, 2022, 120
  • [34] Performance Evaluation of Adversarial Learning for Anomaly Detection using Mixture Models
    Pawar, Yogesh
    Amayri, Manar
    Bouguila, Nizar
    2021 22ND IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL TECHNOLOGY (ICIT), 2021, : 913 - 918
  • [35] Variable Generalization Evaluation of Supervised Learning Models for Detection of Spam Messages
    Khan, Muhammad Saad Shahbaz
    Akbar, Muhammad Osama
    Malik, Hassaan
    Khan, Ali Haider
    Akbar, Zubair
    4TH INTERNATIONAL CONFERENCE ON INNOVATIVE COMPUTING (IC)2, 2021, : 512 - 518
  • [36] Comprehensive Botnet Detection by Mitigating Adversarial Attacks, Navigating the Subtleties of Perturbation Distances and Fortifying Predictions with Conformal Layers
    Yumlembam, Rahul
    Issac, Biju
    Jacob, Seibu Mary
    Yang, Longzhi
    INFORMATION FUSION, 2024, 111
  • [37] Adversarial EXEmples: A Survey and Experimental Evaluation of Practical Attacks on Machine Learning for Windows Malware Detection
    Demetrio, Luca
    Coull, Scott E.
    Biggio, Battista
    Lagorio, Giovanni
    Armando, Alessandro
    Roli, Fabio
    ACM TRANSACTIONS ON PRIVACY AND SECURITY, 2021, 24 (04)
  • [38] A comprehensive transplanting of black-box adversarial attacks from multi-class to multi-label models
    Chen, Zhijian
    Zhou, Qi
    Liu, Yujiang
    Luo, Wenjian
    COMPLEX & INTELLIGENT SYSTEMS, 2025, 11 (04)
  • [39] Robustness Evaluation of Cloud-Deployed Large Language Models against Chinese Adversarial Text Attacks
    Zhang, Yunting
    Ye, Lin
    Li, Baisong
    Zhang, Hongli
    2023 IEEE 12TH INTERNATIONAL CONFERENCE ON CLOUD NETWORKING, CLOUDNET, 2023, : 438 - 442
  • [40] Towards Adversarially Superior Malware Detection Models: An Adversary Aware Proactive Approach using Adversarial Attacks and Defenses
    Hemant Rathore
    Adithya Samavedhi
    Sanjay K. Sahay
    Mohit Sewak
    Information Systems Frontiers, 2023, 25 : 567 - 587