Research on Multimodality Face Antispoofing Model Based on Adversarial Attacks

被引:0
|
作者
Mao, Junjie [1 ,2 ,3 ]
Weng, Bin [1 ,2 ,3 ]
Huang, Tianqiang [1 ,2 ,3 ]
Ye, Feng [1 ,2 ,3 ]
Huang, Liqing [1 ,2 ,3 ]
机构
[1] Fujian Normal Univ, Coll Math & Informat, Fuzhou 350007, Peoples R China
[2] Digital Fujian Inst Big Data Secur Technol, Fuzhou 350007, Peoples R China
[3] Fujian Prov Engn Res Ctr Big Data Anal & Applicat, Fuzhou 350007, Peoples R China
基金
中国国家自然科学基金;
关键词
D O I
10.1155/2021/3670339
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Face antispoofing detection aims to identify whether the user's face identity information is legal. Multimodality models generally have high accuracy. However, the existing works of face antispoofing detection have the problem of insufficient research on the safety of the model itself. Therefore, the purpose of this paper is to explore the vulnerability of existing face antispoofing models, especially multimodality models, when resisting various types of attacks. In this paper, we firstly study the resistance ability of multimodality models when they encounter white-box attacks and black-box attacks from the perspective of adversarial examples. Then, we propose a new method that combines mixed adversarial training and differentiable high-frequency suppression modules to effectively improve model safety. Experimental results show that the accuracy of the multimodality face antispoofing model is reduced from over 90% to about 10% when it is attacked by adversarial examples. But, after applying the proposed defence method, the model can still maintain more than 90% accuracy on original examples, and the accuracy of the model can reach more than 80% on attack examples.
引用
收藏
页数:12
相关论文
共 50 条
  • [1] Research on the Face Forgery Detection Model Based on Adversarial Training and Disentanglement
    Wang, Yidi
    Fu, Hui
    Wu, Tongkai
    APPLIED SCIENCES-BASEL, 2024, 14 (11):
  • [2] Detection of Face Recognition Adversarial Attacks
    Massoli, Fabio Valerio
    Carrara, Fabio
    Amato, Giuseppe
    Falchi, Fabrizio
    COMPUTER VISION AND IMAGE UNDERSTANDING, 2021, 202
  • [3] Face antispoofing based on frame difference and multilevel representation
    Benlamoudi, Azeddine
    Aiadi, Kamal Eddine
    Ouafi, Abdelkrim
    Samai, Djamel
    Oussalah, Mourad
    JOURNAL OF ELECTRONIC IMAGING, 2017, 26 (04)
  • [4] Unravelling Robustness of Deep Learning Based Face Recognition against Adversarial Attacks
    Goswami, Gaurav
    Ratha, Nalini
    Agarwal, Akshay
    Singh, Richa
    Vatsa, Mayank
    THIRTY-SECOND AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE / THIRTIETH INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE CONFERENCE / EIGHTH AAAI SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2018, : 6829 - 6836
  • [5] Invisible Adversarial Attacks on Deep Learning-Based Face Recognition Models
    Lin, Chih-Yang
    Chen, Feng-Jie
    Ng, Hui-Fuang
    Lin, Wei-Yang
    IEEE ACCESS, 2023, 11 : 51567 - 51577
  • [6] Adversarial Attacks on Face Detectors using Neural Net based Constrained Optimization
    Bose, Avishek Joey
    Aarabi, Parham
    2018 IEEE 20TH INTERNATIONAL WORKSHOP ON MULTIMEDIA SIGNAL PROCESSING (MMSP), 2018,
  • [7] Exploring Frequency Adversarial Attacks for Face Forgery Detection
    Jia, Shuai
    Ma, Chao
    Yao, Taiping
    Yin, Bangjie
    Ding, Shouhong
    Yang, Xiaokang
    2022 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2022), 2022, : 4093 - 4102
  • [8] GENERATING ADVERSARIAL EXAMPLES BY MAKEUP ATTACKS ON FACE RECOGNITION
    Zhu, Zheng-An
    Lu, Yun-Zhong
    Chiang, Chen-Kuo
    2019 IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING (ICIP), 2019, : 2516 - 2520
  • [9] Adversarial attacks through architectures and spectra in face recognition
    Bisogni, Carmen
    Cascone, Lucia
    Dugelay, Jean-Luc
    Pero, Chiara
    PATTERN RECOGNITION LETTERS, 2021, 147 : 55 - 62
  • [10] Toward Practical Adversarial Attacks on Face Verification Systems
    Kakizaki, Kazuya
    Miyagawa, Taiki
    Singh, Inderjeet
    Sakuma, Jun
    PROCEEDINGS OF THE 20TH INTERNATIONAL CONFERENCE OF THE BIOMETRICS SPECIAL INTEREST GROUP (BIOSIG 2021), 2021, 315