Unpaired Image-To-Image Translation Network for Semantic-based Face Adversarial Examples Generation

N/ACitations
Citations of this article
6Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Recent studies have shown that neural networks are vulnerable to adversarial example (AE) attacks. However, the existing AE generation techniques restrict the pixel perturbation to improve imperceptibility, resulting in low attack success rates. Although increasing perturbations can improve the attack success rate, the imperceptibility of AEs will be reduced. In order to mitigate this contradiction, we propose a new attack method, named AttAdvGAN, which uses adversarial-consistency loss for unpaired image-To-image translation to generate semantic-based AEs for faces, encouraging the generated image contains important features of the original image and hiding adversarial perturbations into shared feature in the target domain. Experiment results show that the proposed approach can generate imperceptible face AEs on the CelebA dataset with high attack success rate in fooling the state-of-The-Art face recognition model. In addition, our proposed method can also be used for facial privacy protection.

Cite

CITATION STYLE

APA

Zhang, J., & Hou, J. (2021). Unpaired Image-To-Image Translation Network for Semantic-based Face Adversarial Examples Generation. In Proceedings of the ACM Great Lakes Symposium on VLSI, GLSVLSI (pp. 449–454). Association for Computing Machinery. https://doi.org/10.1145/3453688.3461751

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free