paper-with-me

Papers

An Attack on Facial Soft-biometric Privacy Enhancement

2021-11-24 · Dailé Osorio-Roig, Christian Rathgeb, Pawel Drozdowski, Philipp Terhörst, Vitomir Štruc, Christoph Busch

In the recent past, different researchers have proposed privacy-enhancing face recognition systems designed to conceal soft-biometric attributes at feature level. These works have reported impressive results, but generally did not consider specific attacks in their analysis of privacy protection. We introduce an attack on said schemes based on two observations: (1) highly similar facial representations usually originate from face images with similar soft-biometric attributes; (2) to achieve high recognition accuracy, robustness against intra-class variations within facial representations has to be retained in their privacy-enhanced versions. The presented attack only requires the privacy-enhancing algorithm as a black-box and a relatively small database of face images with annotated soft-biometric attributes. Firstly, an intercepted privacy-enhanced face representation is compared against the attacker's database. Subsequently, the unknown attribute is inferred from the attributes associated with the highest obtained similarity scores. In the experiments, the attack is applied against two state-of-the-art approaches. The attack is shown to circumvent the privacy enhancement to a considerable degree and is able to correctly classify gender with an accuracy of up to approximately 90%. Future works on privacy-enhancing face recognition are encouraged to include the proposed attack in evaluations on the privacy protection.

📄 PDF Abstract BibTeX arXiv:2111.12405

Code (0)

등록된 구현이 없습니다.

Tasks

AttributeDimensionality ReductionFace Recognition

Similar Papers 제목 키워드 기반

PrivacyProber: Assessment and Detection of Soft-Biometric Privacy-Enhancing Techniques

2022-11-16 · Peter Rot, Peter Peer, Vitomir Štruc

Soft-biometric privacy-enhancing techniques represent machine learning methods that aim to: (i) mitigate privacy concerns associated with face recognition technology by suppressing selected soft-biometric attributes in f…

AttributeFace Recognition

Unsupervised Enhancement of Soft-biometric Privacy with Negative Face Recognition

2020-02-21 · Philipp Terhörst, Marco Huber, Naser Damer, Florian Kirchbuchner 외

Current research on soft-biometrics showed that privacy-sensitive information can be deduced from biometric templates of an individual. Since for many applications, these templates are expected to be used for recognition…

Face Recognition

CausalVE: Face Video Privacy Encryption via Causal Video Prediction

2024-09-28 · Yubo Huang, Wenhao Feng, Xin Lai, Zixi Wang 외

Advanced facial recognition technologies and recommender systems with inadequate privacy technologies and policies for facial interactions increase concerns about bioprivacy violations. With the proliferation of video an…

Face SwappingRecommendation SystemsVideo Prediction

Reversing Deep Face Embeddings with Probable Privacy Protection

2023-10-04 · Daile Osorio-Roig, Paul A. Gerlitz, Christian Rathgeb, Christoph Busch

Generally, privacy-enhancing face recognition systems are designed to offer permanent protection of face embeddings. Recently, so-called soft-biometric privacy-enhancement approaches have been introduced with the aim of …

Face RecognitionImage Reconstruction

Privacy Attacks Against Biometric Models with Fewer Samples: Incorporating the Output of Multiple Models

2022-09-22 · Sohaib Ahmad, Benjamin Fuller, Kaleel Mahmood

Authentication systems are vulnerable to model inversion attacks where an adversary is able to approximate the inverse of a target machine learning model. Biometric models are a prime candidate for this type of attack. T…

Inference AttackMembership Inference Attack