A Physical-World Adversarial Attack Against 3D Face Recognition

05/26/2022
by   Yanjie Li, et al.
0

3D face recognition systems have been widely employed in intelligent terminals, among which structured light imaging is a common method to measure the 3D shape. However, this method could be easily attacked, leading to inaccurate 3D face recognition. In this paper, we propose a novel, physically-achievable attack on the fringe structured light system, named structured light attack. The attack utilizes a projector to project optical adversarial fringes on faces to generate point clouds with well-designed noises. We firstly propose a 3D transform-invariant loss function to enhance the robustness of 3D adversarial examples in the physical-world attack. Then we reverse the 3D adversarial examples to the projector's input to place noises on phase-shift images, which models the process of structured light imaging. A real-world structured light system is constructed for the attack and several state-of-the-art 3D face recognition neural networks are tested. Experiments show that our method can attack the physical system successfully and only needs minor modifications of projected images.

READ FULL TEXT

page 3

page 6

research
09/20/2021

Robust Physical-World Attacks on Face Recognition

Face recognition has been greatly facilitated by the development of deep...
research
08/18/2021

Adversarial Relighting against Face Recognition

Deep face recognition (FR) has achieved significantly high accuracy on s...
research
08/14/2019

AdvFaces: Adversarial Face Synthesis

Face recognition systems have been shown to be vulnerable to adversarial...
research
11/25/2020

Adversarial Attack on Facial Recognition using Visible Light

The use of deep learning for human identification and object detection i...
research
06/08/2021

Simulated Adversarial Testing of Face Recognition Models

Most machine learning models are validated and tested on fixed datasets....
research
09/29/2021

On Brightness Agnostic Adversarial Examples Against Face Recognition Systems

This paper introduces a novel adversarial example generation method agai...
research
03/13/2018

Invisible Mask: Practical Attacks on Face Recognition with Infrared

Accurate face recognition techniques make a series of critical applicati...

Please sign up or login with your details

Forgot password? Click here to reset