paper-with-me

Papers

Defending against GAN-based Deepfake Attacks via Transformation-aware Adversarial Faces

2020-06-12 · Chaofei Yang, Lei Ding, Yiran Chen, Hai Li

Deepfake represents a category of face-swapping attacks that leverage machine learning models such as autoencoders or generative adversarial networks. Although the concept of the face-swapping is not new, its recent technical advances make fake content (e.g., images, videos) more realistic and imperceptible to Humans. Various detection techniques for Deepfake attacks have been explored. These methods, however, are passive measures against Deepfakes as they are mitigation strategies after the high-quality fake content is generated. More importantly, we would like to think ahead of the attackers with robust defenses. This work aims to take an offensive measure to impede the generation of high-quality fake images or videos. Specifically, we propose to use novel transformation-aware adversarially perturbed faces as a defense against GAN-based Deepfake attacks. Different from the naive adversarial faces, our proposed approach leverages differentiable random image transformations during the generation. We also propose to use an ensemble-based approach to enhance the defense robustness against GAN-based Deepfake variants under the black-box setting. We show that training a Deepfake model with adversarial faces can lead to a significant degradation in the quality of synthesized faces. This degradation is twofold. On the one hand, the quality of the synthesized faces is reduced with more visual artifacts such that the synthesized faces are more obviously fake or less convincing to human observers. On the other hand, the synthesized faces can easily be detected based on various metrics.

📄 PDF Abstract BibTeX arXiv:2006.07421

Code (0)

등록된 구현이 없습니다.

Tasks

Face Swapping

Similar Papers 제목 키워드 기반

MagDR: Mask-guided Detection and Reconstruction for Defending Deepfakes

2021-03-26 · CVPR 2021 1 · Zhikai Chen, Lingxi Xie, Shanmin Pang, Yong He 외

Deepfakes raised serious concerns on the authenticity of visual contents. Prior works revealed the possibility to disrupt deepfakes by adding adversarial perturbations to the source data, but we argue that the threat has…

Hiding Faces in Plain Sight: Defending DeepFakes by Disrupting Face Detection

2024-12-02 · Delong Zhu, Yuezun Li, Baoyuan Wu, Jiaran Zhou 외

This paper investigates the feasibility of a proactive DeepFake defense framework, {\em FacePosion}, to prevent individuals from becoming victims of DeepFake videos by sabotaging face detection. The motivation stems from…

Adversarial AttackFace Detection

MultiRobustBench: Benchmarking Robustness Against Multiple Attacks

2023-02-21 · Sihui Dai, Saeed Mahloujifar, Chong Xiang, Vikash Sehwag 외

The bulk of existing research in defending against adversarial examples focuses on defending against a single (typically bounded Lp-norm) attack, but for a practical setting, machine learning (ML) models should be robust…

Benchmarking

Certified robustness against adversarial patch attacks via randomized cropping

2021-06-18 · ICML Workshop AML 2021 7 · Wan-Yi Lin, Fatemeh Sheikholeslami, Jinghao Shi, Leslie Rice 외

This paper proposes a certifiable defense against adversarial patch attacks on image classification. Our approach classifies random crops from the original image independently and classifies the original image as the…

image-classificationImage Classification

FaceShield: Defending Facial Image against Deepfake Threats

2024-12-13 · Jaehwan Jeong, Sumin In, Sieun Kim, Hannie Shin 외

The rising use of deepfakes in criminal activities presents a significant issue, inciting widespread controversy. While numerous studies have tackled this problem, most primarily focus on deepfake detection. These reacti…

DeepFake DetectionDenoisingFace Swapping