A Comprehensive Survey on Backdoor Attacks and Their Defenses in Face Recognition Systems

被引:0
|
作者
Le Roux, Quentin [1 ,2 ]
Bourbao, Eric [1 ]
Teglia, Yannick [1 ]
Kallas, Kassem [2 ]
机构
[1] Thales DIS, F-13600 La Ciotat, France
[2] INRIA, F-35042 Rennes, France
关键词
Backdoor attacks; backdoor defenses; biometrics; deep neural networks; face recognition; integrity vulnerabilities; security; survey; IMAGE;
D O I
10.1109/ACCESS.2024.3382584
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Deep learning has significantly transformed face recognition, enabling the deployment of large-scale, state-of-the-art solutions worldwide. However, the widespread adoption of deep neural networks (DNNs) and the rise of Machine Learning as a Service emphasize the need for secure DNNs. This paper revisits the face recognition threat model in the context of DNN ubiquity and the common practice of outsourcing their training and hosting to third-parties. Here, we identify backdoor attacks as a significant threat to modern DNN-based face recognition systems (FRS). Backdoor attacks involve an attacker manipulating a DNN's training or deployment, injecting it with a stealthy and malicious behavior. Once the DNN has entered its inference stage, the attacker may activate the backdoor and compromise the DNN's intended functionality. Given the critical nature of this threat to DNN-based FRS, our paper comprehensively surveys the literature of backdoor attacks and defenses previously demonstrated on FRS DNNs. As a last point, we highlight potential vulnerabilities and unexplored areas in FRS security.
引用
收藏
页码:47433 / 47468
页数:36
相关论文
共 50 条
  • [41] Privacy Attacks and Defenses in Machine Learning: A Survey
    Liu, Wei
    Han, Xun
    He, Meiling
    [J]. PROCEEDINGS OF THE 13TH INTERNATIONAL CONFERENCE ON COMPUTER ENGINEERING AND NETWORKS, VOL III, CENET 2023, 2024, 1127 : 413 - 422
  • [42] Countermeasure for the Protection of Face Recognition Systems Against Mask Attacks
    Kose, Neslihan
    Dugelay, Jean-Luc
    [J]. 2013 10TH IEEE INTERNATIONAL CONFERENCE AND WORKSHOPS ON AUTOMATIC FACE AND GESTURE RECOGNITION (FG), 2013,
  • [43] Survey on adversarial attacks and defenses for object detection
    Wang, Xinxin
    Chen, Jing
    He, Kun
    Zhang, Zijun
    Du, Ruiying
    Li, Qiao
    She, Jisi
    [J]. Tongxin Xuebao/Journal on Communications, 2023, 44 (11): : 260 - 277
  • [44] A comprehensive survey on 3D face recognition methods
    Li, Menghan
    Huang, Bin
    Tian, Guohui
    [J]. ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2022, 110
  • [45] Survey on Privacy Attacks and Defenses in Machine Learning
    Liu, Rui-Xuan
    Chen, Hong
    Guo, Ruo-Yang
    Zhao, Dan
    Liang, Wen-Juan
    Li, Cui-Ping
    [J]. Ruan Jian Xue Bao/Journal of Software, 2020, 31 (03): : 866 - 892
  • [46] 3D face recognition: A comprehensive survey in 2022
    Jing, Yaping
    Lu, Xuequan
    Gao, Shang
    [J]. COMPUTATIONAL VISUAL MEDIA, 2023, 9 (04) : 657 - 685
  • [47] A Detailed Survey on Federated Learning Attacks and Defenses
    Sikandar, Hira Shahzadi
    Waheed, Huda
    Tahir, Sibgha
    Malik, Saif U. R.
    Rafique, Waqas
    [J]. ELECTRONICS, 2023, 12 (02)
  • [48] A Survey of Attacks and Defenses for Deep Neural Networks
    Machooka, Daniel
    Yuan, Xiaohong
    Esterline, Albert
    [J]. 2023 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE, CSR, 2023, : 254 - 261
  • [49] 3D face recognition: A comprehensive survey in 2022
    Yaping Jing
    Xuequan Lu
    Shang Gao
    [J]. Computational Visual Media, 2023, 9 : 657 - 685
  • [50] A Survey on Split Manufacturing: Attacks, Defenses, and Challenges
    Perez, Tiago D.
    Pagliarini, Samuel
    [J]. IEEE ACCESS, 2020, 8 : 184013 - 184035