Attacks on state-of-the-art face recognition using attentional adversarial attack generative network

被引:0
|
作者
Lu Yang
Qing Song
Yingqi Wu
机构
[1] Beijing University of Posts and Telecommunications,Pattern Recognition and Intelligence Vision Lab
来源
关键词
Face recognition; Generative adversarial networks; Adversarial attack;
D O I
暂无
中图分类号
学科分类号
摘要
With the broad use of face recognition, its weakness gradually emerges that it is able to be attacked. Therefore, it is very important to study how face recognition networks are subject to attacks. Generating adversarial examples is an effective attack method, which misleads the face recognition system through obfuscation attack (rejecting a genuine subject) or impersonation attack (matching to an impostor). In this paper, we introduce a novel GAN, Attentional Adversarial Attack Generative Network (A3GN), to generate adversarial examples that mislead the network to identify someone as the target person not misclassify inconspicuously. For capturing the geometric and context information of the target person, this work adds a conditional variational autoencoder and attention modules to learn the instance-level correspondences between faces. Unlike traditional two-player GAN, this work introduces a face recognition network as the third player to participate in the competition between generator and discriminator which allows the attacker to impersonate the target person better. The generated faces which are hard to arouse the notice of onlookers can evade recognition by state-of-the-art networks and most of them are recognized as the target person.
引用
收藏
页码:855 / 875
页数:20
相关论文
共 50 条
  • [1] Attacks on state-of-the-art face recognition using attentional adversarial attack generative network
    Yang, Lu
    Song, Qing
    Wu, Yingqi
    [J]. MULTIMEDIA TOOLS AND APPLICATIONS, 2021, 80 (01) : 855 - 875
  • [2] MorGAN: Recognition Vulnerability and Attack Detectability of Face Morphing Attacks Created by Generative Adversarial Network
    Damer, Naser
    Saladie, Alexandra Mosegui
    Braun, Andreas
    Kuijper, Arjan
    [J]. 2018 IEEE 9TH INTERNATIONAL CONFERENCE ON BIOMETRICS THEORY, APPLICATIONS AND SYSTEMS (BTAS), 2018,
  • [3] Accessorize to a Crime: Real and Stealthy Attacks on State-of-the-Art Face Recognition
    Sharif, Mahmood
    Bhagavatula, Sruti
    Reiter, Michael K.
    Bauer, Lujo
    [J]. CCS'16: PROCEEDINGS OF THE 2016 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2016, : 1528 - 1540
  • [4] Vulnerability of State-of-the-Art Face Recognition Models to Template Inversion Attack
    Shahreza, Hatef Otroshi
    Hahn, Vedrana Krivokuca
    Marcel, Sebastien
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 4585 - 4600
  • [5] Coupled generative adversarial network for heterogeneous face recognition
    Iranmanesh, Seyed Mehdi
    Riggan, Benjamin
    Hu, Shuowen
    Nasrabadi, Nasser M.
    [J]. IMAGE AND VISION COMPUTING, 2020, 94
  • [6] Adversarial Patch Attacks on Deep-Learning-Based Face Recognition Systems Using Generative Adversarial Networks
    Hwang, Ren-Hung
    Lin, Jia-You
    Hsieh, Sun-Ying
    Lin, Hsuan-Yu
    Lin, Chia-Liang
    [J]. SENSORS, 2023, 23 (02)
  • [7] FH-GAN: Face Hallucination and Recognition Using Generative Adversarial Network
    Bayramli, Bayram
    Ali, Usman
    Qi, Te
    Lu, Hongtao
    [J]. NEURAL INFORMATION PROCESSING (ICONIP 2019), PT I, 2019, 11953 : 3 - 15
  • [8] A State-of-the-Art Review on Image Synthesis With Generative Adversarial Networks
    Wang, Lei
    Chen, Wei
    Yang, Wenjia
    Bi, Fangming
    Yu, Fei Richard
    [J]. IEEE ACCESS, 2020, 8 : 63514 - 63537
  • [9] Network and cybersecurity applications of defense in adversarial attacks: A state-of-the-art using machine learning and deep learning methods
    Khaleel, Yahya Layth
    Habeeb, Mustafa Abdulfattah
    Albahri, A. S.
    Al-Quraishi, Tahsien
    Albahri, O. S.
    Alamoodi, A. H.
    [J]. JOURNAL OF INTELLIGENT SYSTEMS, 2024, 33 (01)
  • [10] Adversarial Attack for SAR Target Recognition Based on UNet-Generative Adversarial Network
    Du, Chuan
    Zhang, Lei
    [J]. REMOTE SENSING, 2021, 13 (21)