paper-with-me

Papers

Information-containing Adversarial Perturbation for Combating Facial Manipulation Systems

2023-03-21 · Yao Zhu, Yuefeng Chen, Xiaodan Li, Rong Zhang, Xiang Tian, Bolun Zheng, Yaowu Chen

With the development of deep learning technology, the facial manipulation system has become powerful and easy to use. Such systems can modify the attributes of the given facial images, such as hair color, gender, and age. Malicious applications of such systems pose a serious threat to individuals' privacy and reputation. Existing studies have proposed various approaches to protect images against facial manipulations. Passive defense methods aim to detect whether the face is real or fake, which works for posterior forensics but can not prevent malicious manipulation. Initiative defense methods protect images upfront by injecting adversarial perturbations into images to disrupt facial manipulation systems but can not identify whether the image is fake. To address the limitation of existing methods, we propose a novel two-tier protection method named Information-containing Adversarial Perturbation (IAP), which provides more comprehensive protection for {facial images}. We use an encoder to map a facial image and its identity message to a cross-model adversarial example which can disrupt multiple facial manipulation systems to achieve initiative protection. Recovering the message in adversarial examples with a decoder serves passive protection, contributing to provenance tracking and fake image detection. We introduce a feature-level correlation measurement that is more suitable to measure the difference between the facial images than the commonly used mean squared error. Moreover, we propose a spectral diffusion method to spread messages to different frequency channels, thereby improving the robustness of the message against facial manipulation. Extensive experimental results demonstrate that our proposed IAP can recover the messages from the adversarial examples with high average accuracy and effectively disrupt the facial manipulation systems.

📄 PDF Abstract BibTeX arXiv:2303.11625

Code (0)

등록된 구현이 없습니다.

Tasks

Fake Image Detection

Methods 이 논문이 사용한 방법론

Diffusion Diffusion models generate samples by gradually removing noise from a signal, and their training objective can be expressed as a reweighted variational lower-bound…

Similar Papers 제목 키워드 기반

ID-Guard: A Universal Framework for Combating Facial Manipulation via Breaking Identification

2024-09-20 · Zuomin Qu, Wei Lu, Xiangyang Luo, Qian Wang 외

The misuse of deep learning-based facial manipulation poses a potential threat to civil rights. To prevent this fraud at its source, proactive defense technology was proposed to disrupt the manipulation process by adding…

Multi-Task Learning

CMUA-Watermark: A Cross-Model Universal Adversarial Watermark for Combating Deepfakes

2021-05-23 · Hao Huang, Yongtao Wang, Zhaoyu Chen, Yuze Zhang 외

Malicious applications of deepfakes (i.e., technologies generating target facial attributes or entire faces from facial images) have posed a huge threat to individuals' reputation and security. To mitigate these threats,…

Adversarial AttackFace SwappingModel Optimization

NAPPure: Adversarial Purification for Robust Image Classification under Non-Additive Perturbations

2025-10-15 · Junjie Nan, Jianing Li, Wei Chen, Mingkun Zhang 외 arxiv

Adversarial purification has achieved great success in combating adversarial image perturbations, which are usually assumed to be additive. However, non-additive adversarial perturbations such as blur, occlusion, and dis…

Image Classification

Combating Adversarial Attacks Using Sparse Representations

2018-03-11 · Soorya Gopalakrishnan, Zhinus Marzi, Upamanyu Madhow, Ramtin Pedarsani

It is by now well-known that small adversarial perturbations can induce classification errors in deep neural networks (DNNs). In this paper, we make the case that sparse representations of the input data are a crucial to…

General Classification

Three-in-One: Robust Enhanced Universal Transferable Anti-Facial Retrieval in Online Social Networks

2024-12-12 · Yunna Lv, Long Tang, Dengpan Ye, Caiyun Xie 외

Deep hash-based retrieval techniques are widely used in facial retrieval systems to improve the efficiency of facial matching. However, it also carries the danger of exposing private information. Deep hash models are eas…

Meta-LearningRetrieval