CNNs Under Attack: On the Vulnerability of Deep Neural Networks Based Face Recognition to Image Morphing

被引:12
|
作者
Wandzik, Lukasz [1 ]
Garcia, Raul Vicente [1 ]
Kaeding, Gerald [1 ]
Chen, Xi [1 ]
机构
[1] Fraunhofer Inst Prod Syst & Design Technol IPK, Pascalstr 8-9, D-10587 Berlin, Germany
来源
关键词
Face recognition; Biometric spoofing; Face morphing; Deep learning;
D O I
10.1007/978-3-319-64185-0_10
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Facial recognition has become a critical constituent of common automatic border control gates. Despite many advances in recent years, face recognition systems remain susceptible to an ever evolving diversity of spoofing attacks. It has recently been shown that high-quality face morphing or splicing can be employed to deceive facial recognition systems in a border control scenario. Moreover, facial morphs can easily be produced by means of open source software and with minimal technical knowledge. The purpose of this work is to quantify the severeness of the problem using a large dataset of morphed face images. We employ a state-of-the-art face recognition algorithm based on deep convolutional neural networks and measure its performance on a dataset of 7260 high-quality facial morphs with varying blending factor. Using the Inception-ResNet-v1 architecture we train a deep neural model on 4 million images to obtain a validation rate of 99.96% at 0.04% false acceptance rate (FAR) on the original, unmodified images. The same model fails to repel 1.13% of all morphing attacks, accepting both the impostor and the document owner. Based on these results, we discuss the observed weaknesses and possible remedies.
引用
收藏
页码:121 / 135
页数:15
相关论文
共 50 条
  • [1] Accurate and robust neural networks for face morphing attack detection
    Seibold, Clemens
    Samek, Wojciech
    Hilsmann, Anna
    Eisert, Peter
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2020, 53
  • [2] MorDIFF: Recognition Vulnerability and Attack Detectability of Face Morphing Attacks Created by Diffusion Autoencoders
    Damer, Naser
    Fang, Meiling
    Siebke, Patrick
    Kolf, Jan Niklas
    Huber, Marco
    Boutros, Fadi
    2023 11TH INTERNATIONAL WORKSHOP ON BIOMETRICS AND FORENSICS, IWBF, 2023,
  • [3] Research of Face Image Recognition Based on Probabilistic Neural Networks
    Ni Qiakai
    Guo Chao
    Yang Jing
    PROCEEDINGS OF THE 2012 24TH CHINESE CONTROL AND DECISION CONFERENCE (CCDC), 2012, : 3885 - 3888
  • [4] Face Image Based Automatic Diagnosis by Deep Neural Networks
    Niu, Lulu
    Xiong, Gang
    Shen, Zhen
    Pan, Zhouxian
    Chen, Shi
    Dong, Xisong
    PROCEEDINGS OF THE 2021 IEEE 16TH CONFERENCE ON INDUSTRIAL ELECTRONICS AND APPLICATIONS (ICIEA 2021), 2021, : 1352 - 1357
  • [5] MorGAN: Recognition Vulnerability and Attack Detectability of Face Morphing Attacks Created by Generative Adversarial Network
    Damer, Naser
    Saladie, Alexandra Mosegui
    Braun, Andreas
    Kuijper, Arjan
    2018 IEEE 9TH INTERNATIONAL CONFERENCE ON BIOMETRICS THEORY, APPLICATIONS AND SYSTEMS (BTAS), 2018,
  • [6] Face Recognition using Deep Neural Networks
    Dastgiri, Amirhosein
    Jafarinamin, Pouria
    Kamarbaste, Sami
    Gholizade, Mahdi
    JOURNAL OF MECHANICS OF CONTINUA AND MATHEMATICAL SCIENCES, 2019, 14 (03): : 510 - 527
  • [7] Multimodality for Reliable Single Image Based Face Morphing Attack Detection
    Raghavendra, Ramachandra
    Li, Guoqiang
    IEEE ACCESS, 2022, 10 : 82418 - 82433
  • [8] Deep Learning based on Image Recognition Convolutional Neural Networks
    Alamri, Salah
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2022, 22 (04): : 559 - 566
  • [9] A Review of Face Recognition Methods Based on Lightweight Deep Neural Networks
    Li, Xiaoming
    Zhang, Bin
    Li, Yong
    Jia, Jiangkai
    Hao, Yi
    Liu, Dan
    Li, Huichao
    Sun, Ximin
    2023 6TH INTERNATIONAL CONFERENCE ON ELECTRONICS AND ELECTRICAL ENGINEERING TECHNOLOGY, EEET 2023, 2023, : 30 - 39
  • [10] Face morphing attacks and face image quality: The effect of morphing and the unsupervised attack detection by quality
    Fu, Biying
    Damer, Naser
    IET BIOMETRICS, 2022, 11 (05) : 359 - 382