Share your thoughts, 1 month free Claude Pro on usSee more
WorkDL logo mark

ID-Eraser: Proactive Defense Against Face Swapping via Identity Perturbation

About

Deepfake technologies have rapidly advanced with modern generative AI, and face swapping in particular poses serious threats to privacy and digital security. Existing proactive defenses mostly rely on pixel-level perturbations, which are ineffective against contemporary swapping models that extract robust high-level identity embeddings. We propose ID-Eraser, a feature-space proactive defense that removes identifiable facial information to prevent malicious face swapping. By injecting learnable perturbations into identity embeddings and reconstructing natural-looking protection images through a Face Revive Generator (FRG), ID-Eraser produces visually realistic results for humans while rendering the protected identities unusable for Deepfake models. Experiments show that ID-Eraser substantially disrupts identity recognition across diverse face recognition and swapping systems under strict black-box settings, achieving the lowest Top-1 accuracy (0.30) with the best FID (1.64) and LPIPS (0.020). Compared with swaps generated from clean inputs, the identity similarity of protected swaps drops sharply to an average of 0.504 across five representative face swapping models. ID-Eraser further demonstrates strong cross-dataset generalization, robustness to common distortions, and practical effectiveness on commercial APIs, reducing Tencent API similarity from 0.76 to 0.36.

Junyan Luo, Peipeng Yu, Jianwei Fei, Shiya Zeng, Xiaoyu Zhou, Zhihua Xia, Xiang Liu• 2026

Related benchmarks

TaskDatasetResultRank
Face Swapping DefenseCelebA-HQ (test)
ArcFace Similarity0.625
30
Identity MatchingIdentity Matching Dataset
Top-5 Accuracy70.3
24
Identity ErasureCelebA-HQ
Sim-ID32.1
5
Identity ErasureLFW
Sim-ID0.587
5
Identity ErasureVggFace2
Sim-ID0.652
5
Identity ErasureFaceForensics++ (FF++)
Sim-ID52
5
Visual Quality EvaluationFace Dataset
FID1.64
5
Face VerificationBaidu Face-Verification API--
5
Face VerificationTencent Face-Verification API--
5
Face Swapping DefenseFaceForensics++
ArcFace ID Similarity0.572
4
Showing 10 of 14 rows

Other info

Follow for update