Adversarial Mask: Real-World Adversarial Attack Against Face Recognition Models

11/21/2021
by   Alon Zolfi, et al.
0

Deep learning-based facial recognition (FR) models have demonstrated state-of-the-art performance in the past few years, even when wearing protective medical face masks became commonplace during the COVID-19 pandemic. Given the outstanding performance of these models, the machine learning research community has shown increasing interest in challenging their robustness. Initially, researchers presented adversarial attacks in the digital domain, and later the attacks were transferred to the physical domain. However, in many cases, attacks in the physical domain are conspicuous, requiring, for example, the placement of a sticker on the face, and thus may raise suspicion in real-world environments (e.g., airports). In this paper, we propose Adversarial Mask, a physical adversarial universal perturbation (UAP) against state-of-the-art FR models that is applied on face masks in the form of a carefully crafted pattern. In our experiments, we examined the transferability of our adversarial mask to a wide range of FR model architectures and datasets. In addition, we validated our adversarial mask effectiveness in real-world experiments by printing the adversarial pattern on a fabric medical face mask, causing the FR system to identify only 3.34 mask (compared to a minimum of 83.34

READ FULL TEXT

page 1

page 5

page 7

research
09/18/2023

Stealthy Physical Masked Face Recognition Attack via Adversarial Style Optimization

Deep neural networks (DNNs) have achieved state-of-the-art performance o...
research
10/14/2019

Real-world attack on MTCNN face detection system

Recent studies proved that deep learning approaches achieve remarkable r...
research
09/14/2021

Dodging Attack Using Carefully Crafted Natural Makeup

Deep learning face recognition models are used by state-of-the-art surve...
research
03/14/2022

Defending From Physically-Realizable Adversarial Attacks Through Internal Over-Activation Analysis

This work presents Z-Mask, a robust and effective strategy to improve th...
research
07/15/2022

Realistic mask generation for matter-wave lithography via machine learning

Fast production of large area patterns with nanometre resolution is cruc...
research
07/26/2022

YOLO and Mask R-CNN for Vehicle Number Plate Identification

License plate scanners have grown in popularity in parking lots during t...
research
02/01/2021

About Face: A Survey of Facial Recognition Evaluation

We survey over 100 face datasets constructed between 1976 to 2019 of 145...

Please sign up or login with your details

Forgot password? Click here to reset