Videos, Slides, Films

AdvHat : Real-World Adversarial Attack on ArcFace Face ID System

Conferences
ICPR 2020 MAIN CONFERENCE PS T2.2: Biometrics and Human Analysis (2021)
Available as
Online
Summary

In our speech, we present a novel easily reproducible technique to attack the best public Face ID system ArcFace in different shooting conditions. To create an attack, we print the rectangular pape...

In our speech, we present a novel easily reproducible technique to attack the best public Face ID system ArcFace in different shooting conditions. To create an attack, we print the rectangular paper sticker on a common color printer and put it on a hat. The adversarial sticker is prepared with a novel algorithm for off-plane transformations of the image which imitates sticker location on the hat. Such an approach confuses the state-of-the-art public Face ID model and is transferable to other Face ID models.

Details

Additional Information