paper-with-me

Papers

Adversarial Perturbations Fool Deepfake Detectors

2020-03-24 · Apurva Gandhi, Shomik Jain

This work uses adversarial perturbations to enhance deepfake images and fool common deepfake detectors. We created adversarial perturbations using the Fast Gradient Sign Method and the Carlini and Wagner L2 norm attack in both blackbox and whitebox settings. Detectors achieved over 95% accuracy on unperturbed deepfakes, but less than 27% accuracy on perturbed deepfakes. We also explore two improvements to deepfake detectors: (i) Lipschitz regularization, and (ii) Deep Image Prior (DIP). Lipschitz regularization constrains the gradient of the detector with respect to the input in order to increase robustness to input perturbations. The DIP defense removes perturbations using generative convolutional neural networks in an unsupervised manner. Regularization improved the detection of perturbed deepfakes on average, including a 10% accuracy boost in the blackbox case. The DIP defense achieved 95% accuracy on perturbed deepfakes that fooled the original detector, while retaining 98% accuracy in other cases on a 100 image subsample.

📄 PDF Abstract BibTeX arXiv:2003.10596

Code (1)

ApGa/adversarial_deepfakes 공식 구현 pytorch

Tasks

Face Swapping

Similar Papers 제목 키워드 기반

Adversarial Deepfakes: Evaluating Vulnerability of Deepfake Detectors to Adversarial Examples

2020-02-09 · Shehzeen Hussain, Paarth Neekhara, Malhar Jere, Farinaz Koushanfar 외

Recent advances in video manipulation techniques have made the generation of fake videos more accessible than ever before. Manipulated videos can fuel disinformation and reduce trust in media. Therefore detection of fake…

DeepFake DetectionFace SwappingVideo Compression

Imperceptible Adversarial Examples for Fake Image Detection

2021-06-03 · Quanyu Liao, Yuezun Li, Xin Wang, Bin Kong 외

Fooling people with highly realistic fake images generated with Deepfake or GANs brings a great social disturbance to our society. Many methods have been proposed to detect fake images, but they are vulnerable to adversa…

Face SwappingFake Image Detection

Adversarial Magnification to Deceive Deepfake Detection through Super Resolution

2024-07-02 · Davide Alessandro Coccomini, Roberto Caldelli, Giuseppe Amato, Fabrizio Falchi 외

Deepfake technology is rapidly advancing, posing significant challenges to the detection of manipulated media content. Parallel to that, some adversarial attack techniques have been developed to fool the deepfake detecto…

Adversarial AttackDeepFake DetectionFace SwappingSuper-Resolution

Metamorphic Testing-based Adversarial Attack to Fool Deepfake Detectors

2022-04-19 · Nyee Thoang Lim, Meng Yi Kuan, Muxin Pu, Mei Kuan Lim 외

Deepfakes utilise Artificial Intelligence (AI) techniques to create synthetic media where the likeness of one person is replaced with another. There are growing concerns that deepfakes can be maliciously used to create m…

Adversarial AttackDeepFake DetectionFace Swapping

Are Watermarks Bugs for Deepfake Detectors? Rethinking Proactive Forensics

2024-04-27 · Xiaoshuai Wu, Xin Liao, Bo Ou, Yuling Liu 외

AI-generated content has accelerated the topic of media synthesis, particularly Deepfake, which can manipulate our portraits for positive or malicious purposes. Before releasing these threatening face images, one promisi…

DeepFake DetectionFace Swapping