AdvHat: Real-world adversarial attack on ArcFace Face ID system

08/23/2019
by   Stepan Komkov, et al.
21

In this paper we propose a novel easily reproducible technique to attack the best public Face ID system ArcFace in different shooting conditions. To create an attack, we print the rectangular paper sticker on a common color printer and put it on the hat. The adversarial sticker is prepared with a novel algorithm for off-plane transformations of the image which imitates sticker location on the hat. Such an approach confuses the state-of-the-art public Face ID model LResNet100E-IR, ArcFace@ms1m-refine-v2 and is transferable to other Face ID models.

READ FULL TEXT

page 1

page 3

page 4

page 6

research
07/19/2021

A Systematical Solution for Face De-identification

With the identity information in face data more closely related to perso...
research
07/20/2022

Revisiting Hotels-50K and Hotel-ID

In this paper, we propose revisited versions for two recent hotel recogn...
research
04/15/2023

ID2image: Leakage of non-ID information into face descriptors and inversion from descriptors to images

Embedding a face image to a descriptor vector using a deep CNN is a wide...
research
09/15/2018

DocFace+: ID Document to Selfie Matching

Numerous activities in our daily life require us to verify who we are by...
research
09/08/2021

Digitize-PID: Automatic Digitization of Piping and Instrumentation Diagrams

Digitization of scanned Piping and Instrumentation diagrams(P ID), wid...
research
12/22/2017

Joint IDs Embedding and its Applications in E-commerce

E-commerce has become an important part of our daily lives and there are...
research
10/07/2021

Curating Subject ID Labels using Keypoint Signatures

Subject ID labels are unique, anonymized codes that can be used to group...

Please sign up or login with your details

Forgot password? Click here to reset