Towards Privacy-Preserving Visual Recognition via Adversarial Training: A Pilot Study

07/22/2018
by   Zhenyu Wu, et al.
1

This paper aims to improve privacy-preserving visual recognition, an increasingly demanded feature in smart camera applications, by formulating a unique adversarial training framework. The proposed framework explicitly learns a degradation transform for the original video inputs, in order to optimize the trade-off between target task performance and the associated privacy budgets on the degraded video. A notable challenge is that the privacy budget, often defined and measured in task-driven contexts, cannot be reliably indicated using any single model performance, because a strong protection of privacy has to sustain against any possible model that tries to hack privacy information. Such an uncommon situation has motivated us to propose two strategies, i.e., budget model restarting and ensemble, to enhance the generalization of the learned degradation on protecting privacy against unseen hacker models. Novel training strategies, evaluation protocols, and result visualization methods have been designed accordingly. Two experiments on privacy-preserving action recognition, with privacy budgets defined in various ways, manifest the compelling effectiveness of the proposed framework in simultaneously maintaining high target task (action recognition) performance while suppressing the privacy breach risk.

READ FULL TEXT

page 14

page 22

page 25

page 26

research
06/12/2019

Privacy-Preserving Deep Visual Recognition: An Adversarial Learning Framework and A New Dataset

This paper aims to boost privacy-preserving visual recognition, an incre...
research
02/25/2019

Privacy-Preserving Action Recognition using Coded Aperture Videos

The risk of unauthorized remote access of streaming video from networked...
research
01/08/2023

STPrivacy: Spatio-Temporal Tubelet Sparsification and Anonymization for Privacy-preserving Action Recognition

Recently privacy-preserving action recognition (PPAR) has been becoming ...
research
08/04/2022

Privacy-Preserving Action Recognition via Motion Difference Quantization

The widespread use of smart computer vision systems in our personal spac...
research
02/09/2020

Target Privacy Preserving for Social Networks

In this paper, we incorporate the realistic scenario of key protection i...
research
10/03/2022

Privacy-Preserving Feature Coding for Machines

Automated machine vision pipelines do not need the exact visual content ...
research
10/06/2021

Multi-Trigger-Key: Towards Multi-Task Privacy Preserving In Deep Learning

Deep learning-based Multi-Task Classification (MTC) is widely used in ap...

Please sign up or login with your details

Forgot password? Click here to reset