English
Related papers

Related papers: Amora: Black-box Adversarial Morphing Attack

200 papers

Face recognition (FR) systems have demonstrated outstanding verification performance, suggesting suitability for real-world applications ranging from photo tagging in social media to automated border control (ABC). In an advanced FR system…

Computer Vision and Pattern Recognition · Computer Science 2021-02-09 Fatemeh Vakhshiteh , Ahmad Nickabadi , Raghavendra Ramachandra

Morphing attacks are one of the many threats that are constantly affecting deep face recognition systems. It consists of selecting two faces from different individuals and fusing them into a final image that contains the identity…

Computer Vision and Pattern Recognition · Computer Science 2022-08-24 Pedro C. Neto , Tiago Gonçalves , Marco Huber , Naser Damer , Ana F. Sequeira , Jaime S. Cardoso

Adversarial attacks on face recognition (FR) systems pose a significant security threat, yet most are confined to the digital domain or require white-box access. We introduce GaP (Gaussian Patch), a novel method to generate a universal,…

Computer Vision and Pattern Recognition · Computer Science 2025-09-30 Andrey Kaznacheev , Matvey Mikhalchuk , Andrey Kuznetsov , Aleksandr Petiushko , Anton Razzhigaev

Face morphing attacks aim at creating face images that are verifiable to be the face of multiple identities, which can lead to building faulty identity links in operations like border checks. While creating a morphed face detector (MFD),…

Computer Vision and Pattern Recognition · Computer Science 2021-09-27 Naser Damer , Kiran Raja , Marius Süßmilch , Sushma Venkatesh , Fadi Boutros , Meiling Fang , Florian Kirchbuchner , Raghavendra Ramachandra , Arjan Kuijper

The adversarial attack can force a CNN-based model to produce an incorrect output by craftily manipulating human-imperceptible input. Exploring such perturbations can help us gain a deeper understanding of the vulnerability of neural…

Computer Vision and Pattern Recognition · Computer Science 2022-07-19 Xiangyu Yin , Wenjie Ruan , Jonathan Fieldsend

Neural ranking models (NRMs) have shown remarkable success in recent years, especially with pre-trained language models. However, deep neural models are notorious for their vulnerability to adversarial examples. Adversarial attacks may…

Information Retrieval · Computer Science 2022-06-09 Chen Wu , Ruqing Zhang , Jiafeng Guo , Maarten de Rijke , Yixing Fan , Xueqi Cheng

Morphing is the process of combining two or more subjects in an image in order to create a new identity which contains features of both individuals. Morphed images can fool Facial Recognition Systems (FRS) into falsely accepting multiple…

Computer Vision and Pattern Recognition · Computer Science 2021-11-04 Kelsey O'Haire , Sobhan Soleymani , Baaria Chaudhary , Poorya Aghdaie , Jeremy Dawson , Nasser M. Nasrabadi

Adversarial machine learning is an emerging area showing the vulnerability of deep learning models. Exploring attack methods to challenge state of the art artificial intelligence (A.I.) models is an area of critical concern. The reliability…

Computer Vision and Pattern Recognition · Computer Science 2022-08-31 Samet Bayram , Kenneth Barner

Face morphing attacks seek to deceive a Face Recognition (FR) system by presenting a morphed image consisting of the biometric qualities from two different identities with the aim of triggering a false acceptance with one of the two…

Computer Vision and Pattern Recognition · Computer Science 2024-04-11 Zander W. Blasingame , Chen Liu

With the development of deep learning technology, the facial manipulation system has become powerful and easy to use. Such systems can modify the attributes of the given facial images, such as hair color, gender, and age. Malicious…

Computer Vision and Pattern Recognition · Computer Science 2023-03-22 Yao Zhu , Yuefeng Chen , Xiaodan Li , Rong Zhang , Xiang Tian , Bolun Zheng , Yaowu Chen

The vast accessibility of Synthetic Aperture Radar (SAR) images through online portals has propelled the research across various fields. This widespread use and easy availability have unfortunately made SAR data susceptible to malicious…

Computer Vision and Pattern Recognition · Computer Science 2025-03-17 Sara Mandelli , Edoardo Daniele Cannas , Paolo Bestagini , Stefano Tebaldini , Stefano Tubaro

The success of face recognition (FR) systems has led to serious privacy concerns due to potential unauthorized surveillance and user tracking on social networks. Existing methods for enhancing privacy fail to generate natural face images…

Computer Vision and Pattern Recognition · Computer Science 2025-07-31 Liqin Wang , Qianyue Hu , Wei Lu , Xiangyang Luo

Recently, the field of adversarial machine learning has been garnering attention by showing that state-of-the-art deep neural networks are vulnerable to adversarial examples, stemming from small perturbations being added to the input image.…

Machine Learning · Computer Science 2020-05-19 Ravi Raju , Mikko Lipasti

Machine learning models have been shown vulnerable to adversarial attacks launched by adversarial examples which are carefully crafted by attacker to defeat classifiers. Deep learning models cannot escape the attack either. Most of…

Computer Vision and Pattern Recognition · Computer Science 2018-12-06 Jinyin Chen , Haibin Zheng , Hui Xiong , Mengmeng Su

DeepFake is becoming a real risk to society and brings potential threats to both individual privacy and political security due to the DeepFaked multimedia are realistic and convincing. However, the popular DeepFake passive detection is an…

Cryptography and Security · Computer Science 2022-06-02 Run Wang , Ziheng Huang , Zhikai Chen , Li Liu , Jing Chen , Lina Wang

In security systems the risk assessment in the sense of common criteria testing is a very relevant topic; this requires quantifying the attack potential in terms of the expertise of the attacker, his knowledge about the target and access to…

Computer Vision and Pattern Recognition · Computer Science 2024-08-05 Matteo Ferrara , Annalisa Franco , Davide Maltoni , Christoph Busch

The vulnerability of Face Recognition System (FRS) to various kind of attacks (both direct and in-direct attacks) and face morphing attacks has received a great interest from the biometric community. The goal of a morphing attack is to…

Computer Vision and Pattern Recognition · Computer Science 2020-11-05 Sushma Venkatesh , Raghavendra Ramachandra , Kiran Raja , Christoph Busch

Advances in deep learning have enabled a wide range of promising applications. However, these systems are vulnerable to Adversarial Machine Learning (AML) attacks; adversarially crafted perturbations to their inputs could cause them to…

Cryptography and Security · Computer Science 2022-01-06 Amira Guesmi , Khaled N. Khasawneh , Nael Abu-Ghazaleh , Ihsen Alouani

State-of-the-art face recognition (FR) approaches have shown remarkable results in predicting whether two faces belong to the same identity, yielding accuracies between 92% and 100% depending on the difficulty of the protocol. However, the…

Computer Vision and Pattern Recognition · Computer Science 2022-05-30 Stefan Hörmann , Tianlin Kong , Torben Teepe , Fabian Herzog , Martin Knoche , Gerhard Rigoll

The state-of-the-art deep neural networks (DNNs) are vulnerable against adversarial examples with additive random-like noise perturbations. While such examples are hardly found in the physical world, the image blurring effect caused by…

Computer Vision and Pattern Recognition · Computer Science 2020-11-10 Qing Guo , Felix Juefei-Xu , Xiaofei Xie , Lei Ma , Jian Wang , Bing Yu , Wei Feng , Yang Liu