DeepAI AI Chat
Log In Sign Up

AdvHat: Real-world adversarial attack on ArcFace Face ID system

08/23/2019
by   Stepan Komkov, et al.
HUAWEI Technologies Co., Ltd.
21

In this paper we propose a novel easily reproducible technique to attack the best public Face ID system ArcFace in different shooting conditions. To create an attack, we print the rectangular paper sticker on a common color printer and put it on the hat. The adversarial sticker is prepared with a novel algorithm for off-plane transformations of the image which imitates sticker location on the hat. Such an approach confuses the state-of-the-art public Face ID model LResNet100E-IR, ArcFace@ms1m-refine-v2 and is transferable to other Face ID models.

READ FULL TEXT

page 1

page 3

page 4

page 6

07/19/2021

A Systematical Solution for Face De-identification

With the identity information in face data more closely related to perso...
07/20/2022

Revisiting Hotels-50K and Hotel-ID

In this paper, we propose revisited versions for two recent hotel recogn...
04/15/2023

ID2image: Leakage of non-ID information into face descriptors and inversion from descriptors to images

Embedding a face image to a descriptor vector using a deep CNN is a wide...
09/15/2018

DocFace+: ID Document to Selfie Matching

Numerous activities in our daily life require us to verify who we are by...
09/08/2021

Digitize-PID: Automatic Digitization of Piping and Instrumentation Diagrams

Digitization of scanned Piping and Instrumentation diagrams(P ID), wid...
12/22/2017

Joint IDs Embedding and its Applications in E-commerce

E-commerce has become an important part of our daily lives and there are...
10/07/2021

Curating Subject ID Labels using Keypoint Signatures

Subject ID labels are unique, anonymized codes that can be used to group...

Code Repositories

advhat

AdvHat: Real-world adversarial attack on ArcFace Face ID system


view repo

detection-of-physical-adversarial-attack

None


view repo

advhat

advhat attack code(only read for myself)


view repo