DeepIris: An ensemble approach to defending Iris recognition classifiers against Adversarial Attacks

被引:3
|
作者
Tamizhiniyan, S. R. [1 ]
Ojha, Aman [1 ]
Meenakshi, K. [2 ]
Maragatham, G. [2 ]
机构
[1] SRM Inst Sci & Technol, Dept Comp Sci & Engn, Kattankulathur, India
[2] SRM Inst Sci & Technol, Dept Informat Technol, Kattankulathur, India
关键词
biometrics; Deep convolutional Neural Networks; adversarial attack; Defense method; encoder; security; iris classification;
D O I
10.1109/ICCCI50826.2021.9402404
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Despite being known for their robust performance in the biometrics domain, Deep Convolutional Neural Networks always face a high risk of being fooled by precisely engineered input samples. These samples are called adversarial examples and such attacks are called adversarial attacks. These attacks pose great threat to any biometric security system. In this paper, to guard against adversarial iris images, we propose defensive schemes. The first strategy we propose relies on our adversarial denoising encoder architecture. The second strategy relies on wavelet transformation to divide them into wavelet sub-bands following an U-net architecture wavelet domain denoising on processing each sub-band to remove the adversarial noise. We measure the efficiency against numerous attack scenarios of the suggested adversarial defence mechanism and equate the findings with state-of-the-art defence strategies.
引用
收藏
页数:8
相关论文
共 50 条
  • [1] Defending Black Box Facial Recognition Classifiers Against Adversarial Attacks
    Theagarajan, Rajkumar
    Bhanu, Bir
    2020 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION WORKSHOPS (CVPRW 2020), 2020, : 3537 - 3547
  • [2] Defending Wireless Receivers Against Adversarial Attacks on Modulation Classifiers
    de Araujo-Filho, Paulo Freitas
    Kaddoum, Georges
    Chiheb Ben Nasr, Mohamed
    Arcoverde, Henrique F.
    Campelo, Divanilson R.
    IEEE INTERNET OF THINGS JOURNAL, 2023, 10 (21) : 19153 - 19162
  • [3] A Self Supervised Defending Mechanism Against Adversarial Iris Attacks based on Wavelet Transform
    Meenakshi, K.
    Maragatham, G.
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2021, 12 (02) : 564 - 569
  • [4] Temporal shuffling for defending deep action recognition models against adversarial attacks
    Hwang, Jaehui
    Zhang, Huan
    Choi, Jun-Ho
    Hsieh, Cho-Jui
    Lee, Jong-Seok
    NEURAL NETWORKS, 2024, 169 : 388 - 397
  • [5] Defending against adversarial attacks by randomized diversification
    Taran, Olga
    Rezaeifar, Shideh
    Holotyak, Taras
    Voloshynovskiy, Slava
    2019 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2019), 2019, : 11218 - 11225
  • [6] Defending Distributed Systems Against Adversarial Attacks
    Su L.
    Performance Evaluation Review, 2020, 47 (03): : 24 - 27
  • [7] Defending Against Deepfakes with Ensemble Adversarial Perturbation
    Guan, Weinan
    He, Ziwen
    Wang, Wei
    Dong, Jing
    Peng, Bo
    2022 26TH INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION (ICPR), 2022, : 1952 - 1958
  • [8] Ensemble Generative Cleaning with Feedback Loops for Defending Adversarial Attacks
    Yuan, Jianhe
    He, Zhihai
    2020 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2020, : 578 - 587
  • [9] Defending Against Adversarial Attacks in Deep Learning with Robust Auxiliary Classifiers Utilizing Bit Plane Slicing
    Liu, Yuan
    Zhou, Pingqiang
    PROCEEDINGS OF THE 2020 ASIAN HARDWARE ORIENTED SECURITY AND TRUST SYMPOSIUM (ASIANHOST), 2020,
  • [10] Defending AI-Based Automatic Modulation Recognition Models Against Adversarial Attacks
    Tang, Haolin
    Catak, Ferhat Ozgur
    Kuzlu, Murat
    Catak, Evren
    Zhao, Yanxiao
    IEEE ACCESS, 2023, 11 : 76629 - 76637