paper-with-me

홈 › Papers

Improving Visual Quality and Transferability of Adversarial Attacks on Face Recognition Simultaneously with Adversarial Restoration

2023-09-04 · Fengfan Zhou, Hefei Ling, Yuxuan Shi, Jiazhong Chen, Ping Li

Adversarial face examples possess two critical properties: Visual Quality and Transferability. However, existing approaches rarely address these properties simultaneously, leading to subpar results. To address this issue, we propose a novel adversarial attack technique known as Adversarial Restoration (AdvRestore), which enhances both visual quality and transferability of adversarial face examples by leveraging a face restoration prior. In our approach, we initially train a Restoration Latent Diffusion Model (RLDM) designed for face restoration. Subsequently, we employ the inference process of RLDM to generate adversarial face examples. The adversarial perturbations are applied to the intermediate features of RLDM. Additionally, by treating RLDM face restoration as a sibling task, the transferability of the generated adversarial face examples is further improved. Our experimental results validate the effectiveness of the proposed attack method.

📄 PDF Abstract BibTeX arXiv:2309.01582

Code (0)

등록된 구현이 없습니다.

Tasks

Adversarial AttackFace Recognition

Methods 이 논문이 사용한 방법론

Diffusion Diffusion models generate samples by gradually removing noise from a signal, and their training objective can be expressed as a reweighted variational lower-bound…
Latent Diffusion Model Diffusion models applied to latent spaces, which are normally built with (Variational) Autoencoders.

Similar Papers 제목 키워드 기반

NeRFTAP: Enhancing Transferability of Adversarial Patches on Face Recognition using Neural Radiance Fields

2023-11-29 · Xiaoliang Liu, Furao Shen, Feng Han, Jian Zhao 외

Face recognition (FR) technology plays a crucial role in various applications, but its vulnerability to adversarial attacks poses significant security concerns. Existing research primarily focuses on transferability to d…

Adversarial AttackFace RecognitionNeRF

SITA: Structurally Imperceptible and Transferable Adversarial Attacks for Stylized Image Generation

2025-03-25 · Jingdan Kang, Haoxin Yang, Yan Cai, Huaidong Zhang 외

Image generation technology has brought significant advancements across various fields but has also raised concerns about data misuse and potential rights infringements, particularly with respect to creating visual artwo…

Computational EfficiencyImage Generation

Exploring Frequency Adversarial Attacks for Face Forgery Detection

2022-03-29 · CVPR 2022 1 · Shuai Jia, Chao Ma, Taiping Yao, Bangjie Yin 외

Various facial manipulation techniques have drawn serious public concerns in morality, security, and privacy. Although existing face forgery classifiers achieve promising performance on detecting fake images, these metho…

Adversarial AttackMeta-Learning

Adv-Attribute: Inconspicuous and Transferable Adversarial Attack on Face Recognition

2022-10-13 · Shuai Jia, Bangjie Yin, Taiping Yao, Shouhong Ding 외

Deep learning models have shown their vulnerability when dealing with adversarial attacks. Existing attacks almost perform on low-level instances, such as pixels and super-pixels, and rarely exploit semantic clues. For f…

Adversarial AttackAttributeDenoisingFace Recognition

Transferable Adversarial Facial Images for Privacy Protection

2024-07-18 · Minghui Li, Jiangxiong Wang, Hao Zhang, Ziqi Zhou 외

The success of deep face recognition (FR) systems has raised serious privacy concerns due to their ability to enable unauthorized tracking of users in the digital world. Previous studies proposed introducing imperceptibl…

Face Recognition