Share your thoughts, 1 month free Claude Pro on usSee more
WorkDL logo mark

Towards Face Encryption by Generating Adversarial Identity Masks

About

As billions of personal data being shared through social media and network, the data privacy and security have drawn an increasing attention. Several attempts have been made to alleviate the leakage of identity information from face photos, with the aid of, e.g., image obfuscation techniques. However, most of the present results are either perceptually unsatisfactory or ineffective against face recognition systems. Our goal in this paper is to develop a technique that can encrypt the personal photos such that they can protect users from unauthorized face recognition systems but remain visually identical to the original version for human beings. To achieve this, we propose a targeted identity-protection iterative method (TIP-IM) to generate adversarial identity masks which can be overlaid on facial images, such that the original identities can be concealed without sacrificing the visual quality. Extensive experiments demonstrate that TIP-IM provides 95\%+ protection success rate against various state-of-the-art face recognition models under practical test scenarios. Besides, we also show the practical and effective applicability of our method on a commercial API service.

Xiao Yang, Yinpeng Dong, Tianyu Pang, Hang Su, Jun Zhu, Yuefeng Chen, Hui Xue• 2020

Related benchmarks

TaskDatasetResultRank
Face IdentificationLFW (test)
Rank-1 PSR82.2
60
Face VerificationFFHQ
ASR (IR152)46.25
42
Black-box AttackCelebA-HQ
IRSE50 Score57.29
32
Image Quality EvaluationCelebA-HQ
PSNR33.2106
25
Impersonation Attack (Face Identification)CelebA-HQ (test)
R1-T PSR21.2
24
Face RecognitionLFW (test)
Rank-1 PSR34
20
Face VerificationCelebA-HQ
ASR (IR152)0.4126
19
Face Privacy ProtectionCelebA-HQ and LADN
PSR Gain50.06
14
Face Privacy ProtectionLADN-Dataset
PSR (IRSE50)65.89
10
Face Privacy ProtectionCelebA-HQ
PSR (IRSE50)54.4
10
Showing 10 of 14 rows

Other info

Follow for update