Generative Transferable Universal Adversarial Perturbation for Combating Deepfakes

被引:0
|
作者
Guo, Yuchen [1 ,2 ]
Wang, Xi [1 ]
Fu, Xiaomeng [1 ,2 ]
Li, Jin [1 ,2 ]
Li, Zhaoxing [1 ]
Chai, Yesheng [1 ]
Hao, Jizhong [1 ]
机构
[1] Chinese Acad Sci, Inst Informat Engn, Beijing, Peoples R China
[2] Univ Chinese Acad Sci, Sch Cyber Secur, Beijing, Peoples R China
关键词
adversarial perturbation; deepfake; face modification; face protection;
D O I
10.1109/CSCWD61410.2024.10580713
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Recently, Deepfake has posed a significant threat to our digital society. This technology allows for the modification of facial identity, expression, and attributes in facial images and videos. The misuse of Deepfake can invade personal privacy, damage individuals' reputations, and have serious consequences. To counter this threat, researchers have proposed active defense methods using adversarial perturbation to distort Deepfake products which can hinder the dissemination of false information. However, the existing methods are primarily based on image-specific approaches, which are inefficient for large-scale data. To address these issues, we propose an end-to-end approach to generate universal perturbations for combating Deepfake. To further cope with diverse Deepfakes, we introduce an adaptive balancing strategy to combat multiple models simultaneously. Specifically, for different scenarios, we propose two types of universal perturbations. Disrupting Universal Perturbation (DUP) leads Deepfake models to generate distorted outputs. In contrast, Lapsing Universal Perturbation (LUP) tries to make the output consistent with the original image, allowing the correct information to continue propagating. Experiments demonstrate the effectiveness and better generalization of our proposed perturbation compared with state-of-the-art methods. Consequently, our proposed method offers a powerful and efficient solution for combating Deepfake, which can help preserve personal privacy and prevent reputational damage.
引用
收藏
页码:1980 / 1985
页数:6
相关论文
共 50 条
  • [11] Once and for All: Universal Transferable Adversarial Perturbation against Deep Hashing-Based Facial Image Retrieval
    Tang, Long
    Ye, Dengpan
    Lv, Yunna
    Chen, Chuanxi
    Zhang, Yunming
    THIRTY-EIGHTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 38 NO 6, 2024, : 5136 - 5144
  • [12] Generating universal adversarial perturbation with ResNet
    Xu, Jian
    Liu, Heng
    Wu, Dexin
    Zhou, Fucai
    Gao, Chong-zhi
    Jiang, Linzhi
    INFORMATION SCIENCES, 2020, 537 (537) : 302 - 312
  • [13] Transferable Sparse Adversarial Attack on Modulation Recognition With Generative Networks
    Jiang, Zenghui
    Zeng, Weijun
    Zhou, Xingyu
    Chen, Pu
    Yin, Shenqian
    IEEE COMMUNICATIONS LETTERS, 2024, 28 (05) : 999 - 1003
  • [14] Using Deep Learning to Identify Deepfakes Created Using Generative Adversarial Networks
    Jheelan, Jhanvi
    Pudaruth, Sameerchand
    COMPUTERS, 2025, 14 (02)
  • [15] DIVERSE GENERATIVE PERTURBATIONS ON ATTENTION SPACE FOR TRANSFERABLE ADVERSARIAL ATTACKS
    Kim, Woo Jae
    Hong, Seunghoon
    Yoon, Sung-Eui
    2022 IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING, ICIP, 2022, : 281 - 285
  • [16] Distribution Fitting for Combating Mode Collapse in Generative Adversarial Networks
    Gong, Yanxiang
    Xie, Zhiwei
    Duan, Guozhen
    Ma, Zheng
    Xie, Mei
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2024, 35 (12) : 18251 - 18262
  • [17] A Transferable Adversarial Belief Attack With Salient Region Perturbation Restriction
    Zhang, Shihui
    Zuo, Dongxu
    Yang, Yongliang
    Zhang, Xiaowei
    IEEE TRANSACTIONS ON MULTIMEDIA, 2023, 25 : 4296 - 4306
  • [18] Distribution constraining for combating mode collapse in generative adversarial networks
    Gong, Yanxiang
    Zhong, Minjiang
    Ji, Yang
    Xie, Mei
    Ma, Xin
    JOURNAL OF ELECTRONIC IMAGING, 2023, 32 (04)
  • [19] Learning Universal Adversarial Perturbations with Generative Models
    Hayes, Jamie
    Danezis, George
    2018 IEEE SYMPOSIUM ON SECURITY AND PRIVACY WORKSHOPS (SPW 2018), 2018, : 43 - 49
  • [20] Leveraging Generative Models for Combating Adversarial Attacks on Tabular Datasets
    Zhou, Jiahui
    Zaidi, Nayyar
    Zhang, Yishuo
    Montague, Paul
    Kim, Junae
    Li, Gang
    ADVANCES IN KNOWLEDGE DISCOVERY AND DATA MINING, PAKDD 2023, PT I, 2023, 13935 : 147 - 158