{"id":"https://openalex.org/W4414798780","doi":"https://doi.org/10.1109/access.2025.3617447","title":"GenPure: Foundation-Model-Guided Multi-Stage Purification Framework for Black-Box Evasion of Deepfake Detectors","display_name":"GenPure: Foundation-Model-Guided Multi-Stage Purification Framework for Black-Box Evasion of Deepfake Detectors","publication_year":2025,"publication_date":"2025-01-01","ids":{"openalex":"https://openalex.org/W4414798780","doi":"https://doi.org/10.1109/access.2025.3617447"},"language":"en","primary_location":{"id":"doi:10.1109/access.2025.3617447","is_oa":true,"landing_page_url":"https://doi.org/10.1109/access.2025.3617447","pdf_url":null,"source":{"id":"https://openalex.org/S2485537415","display_name":"IEEE Access","issn_l":"2169-3536","issn":["2169-3536"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Access","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://doi.org/10.1109/access.2025.3617447","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5108133777","display_name":"Y. Sun","orcid":"https://orcid.org/0009-0002-2597-770X"},"institutions":[{"id":"https://openalex.org/I14396692","display_name":"Tokyo University of Information Sciences","ror":"https://ror.org/044bdx604","country_code":"JP","type":"education","lineage":["https://openalex.org/I14396692"]},{"id":"https://openalex.org/I74801974","display_name":"The University of Tokyo","ror":"https://ror.org/057zh3y96","country_code":"JP","type":"education","lineage":["https://openalex.org/I74801974"]}],"countries":["JP"],"is_corresponding":true,"raw_author_name":"Yuyang Sun","raw_affiliation_strings":["Department of Information and Communication Engineering, The University of Tokyo, Tokyo, Japan","Department of Information &#x0026; Communication Engineering, The University of Tokyo, Japan"],"affiliations":[{"raw_affiliation_string":"Department of Information and Communication Engineering, The University of Tokyo, Tokyo, Japan","institution_ids":["https://openalex.org/I14396692","https://openalex.org/I74801974"]},{"raw_affiliation_string":"Department of Information &#x0026; Communication Engineering, The University of Tokyo, Japan","institution_ids":["https://openalex.org/I14396692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5014271344","display_name":"Ching\u2010Chun Chang","orcid":"https://orcid.org/0000-0001-7723-4591"},"institutions":[{"id":"https://openalex.org/I184597095","display_name":"National Institute of Informatics","ror":"https://ror.org/04ksd4g47","country_code":"JP","type":"facility","lineage":["https://openalex.org/I1319490839","https://openalex.org/I184597095","https://openalex.org/I4210158934"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Ching-Chun Chang","raw_affiliation_strings":["National Institute of Informatics, Tokyo, Japan","National Institute of Informatics, Japan"],"affiliations":[{"raw_affiliation_string":"National Institute of Informatics, Tokyo, Japan","institution_ids":["https://openalex.org/I184597095"]},{"raw_affiliation_string":"National Institute of Informatics, Japan","institution_ids":["https://openalex.org/I184597095"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5044556342","display_name":"Isao Echizen","orcid":"https://orcid.org/0000-0003-4908-1860"},"institutions":[{"id":"https://openalex.org/I14396692","display_name":"Tokyo University of Information Sciences","ror":"https://ror.org/044bdx604","country_code":"JP","type":"education","lineage":["https://openalex.org/I14396692"]},{"id":"https://openalex.org/I74801974","display_name":"The University of Tokyo","ror":"https://ror.org/057zh3y96","country_code":"JP","type":"education","lineage":["https://openalex.org/I74801974"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Isao Echizen","raw_affiliation_strings":["Department of Information and Communication Engineering, The University of Tokyo, Tokyo, Japan","Department of Information &#x0026; Communication Engineering, The University of Tokyo, Japan"],"affiliations":[{"raw_affiliation_string":"Department of Information and Communication Engineering, The University of Tokyo, Tokyo, Japan","institution_ids":["https://openalex.org/I14396692","https://openalex.org/I74801974"]},{"raw_affiliation_string":"Department of Information &#x0026; Communication Engineering, The University of Tokyo, Japan","institution_ids":["https://openalex.org/I14396692"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5108133777"],"corresponding_institution_ids":["https://openalex.org/I14396692","https://openalex.org/I74801974"],"apc_list":{"value":1850,"currency":"USD","value_usd":1850},"apc_paid":{"value":1850,"currency":"USD","value_usd":1850},"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.14086884,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"13","issue":null,"first_page":"173909","last_page":"173922"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9840999841690063,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9840999841690063,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9258999824523926,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/discriminative-model","display_name":"Discriminative model","score":0.6037999987602234},{"id":"https://openalex.org/keywords/evasion","display_name":"Evasion (ethics)","score":0.5956000089645386},{"id":"https://openalex.org/keywords/detector","display_name":"Detector","score":0.59170001745224},{"id":"https://openalex.org/keywords/residual","display_name":"Residual","score":0.4424000084400177},{"id":"https://openalex.org/keywords/mixture-model","display_name":"Mixture model","score":0.42829999327659607},{"id":"https://openalex.org/keywords/synthetic-data","display_name":"Synthetic data","score":0.41909998655319214},{"id":"https://openalex.org/keywords/object-detection","display_name":"Object detection","score":0.41690000891685486},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.41019999980926514},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.3774999976158142}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7827000021934509},{"id":"https://openalex.org/C97931131","wikidata":"https://www.wikidata.org/wiki/Q5282087","display_name":"Discriminative model","level":2,"score":0.6037999987602234},{"id":"https://openalex.org/C2781251061","wikidata":"https://www.wikidata.org/wiki/Q5416089","display_name":"Evasion (ethics)","level":3,"score":0.5956000089645386},{"id":"https://openalex.org/C94915269","wikidata":"https://www.wikidata.org/wiki/Q1834857","display_name":"Detector","level":2,"score":0.59170001745224},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5877000093460083},{"id":"https://openalex.org/C155512373","wikidata":"https://www.wikidata.org/wiki/Q287450","display_name":"Residual","level":2,"score":0.4424000084400177},{"id":"https://openalex.org/C61224824","wikidata":"https://www.wikidata.org/wiki/Q2260434","display_name":"Mixture model","level":2,"score":0.42829999327659607},{"id":"https://openalex.org/C160920958","wikidata":"https://www.wikidata.org/wiki/Q7662746","display_name":"Synthetic data","level":2,"score":0.41909998655319214},{"id":"https://openalex.org/C2776151529","wikidata":"https://www.wikidata.org/wiki/Q3045304","display_name":"Object detection","level":3,"score":0.41690000891685486},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.41019999980926514},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.40290001034736633},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.3774999976158142},{"id":"https://openalex.org/C2780992000","wikidata":"https://www.wikidata.org/wiki/Q17016113","display_name":"Generator (circuit theory)","level":3,"score":0.37380000948905945},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.3603000044822693},{"id":"https://openalex.org/C2780836893","wikidata":"https://www.wikidata.org/wiki/Q19922674","display_name":"Fire detection","level":2,"score":0.35249999165534973},{"id":"https://openalex.org/C175309249","wikidata":"https://www.wikidata.org/wiki/Q725864","display_name":"Pipeline transport","level":2,"score":0.3310999870300293},{"id":"https://openalex.org/C118530786","wikidata":"https://www.wikidata.org/wiki/Q1134732","display_name":"Instrumentation (computer programming)","level":2,"score":0.3174000084400177},{"id":"https://openalex.org/C163716315","wikidata":"https://www.wikidata.org/wiki/Q901177","display_name":"Gaussian","level":2,"score":0.3125},{"id":"https://openalex.org/C96608239","wikidata":"https://www.wikidata.org/wiki/Q1199823","display_name":"Statistical power","level":2,"score":0.288100004196167},{"id":"https://openalex.org/C49937458","wikidata":"https://www.wikidata.org/wiki/Q2599292","display_name":"Probabilistic logic","level":2,"score":0.28049999475479126},{"id":"https://openalex.org/C167966045","wikidata":"https://www.wikidata.org/wiki/Q5532625","display_name":"Generative model","level":3,"score":0.28040000796318054},{"id":"https://openalex.org/C177769412","wikidata":"https://www.wikidata.org/wiki/Q278090","display_name":"Prior probability","level":3,"score":0.2768000066280365},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.2745000123977661},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.27219998836517334},{"id":"https://openalex.org/C106430172","wikidata":"https://www.wikidata.org/wiki/Q6002272","display_name":"Image restoration","level":4,"score":0.2718000113964081},{"id":"https://openalex.org/C173801870","wikidata":"https://www.wikidata.org/wiki/Q201413","display_name":"Heuristic","level":2,"score":0.2624000012874603},{"id":"https://openalex.org/C52622490","wikidata":"https://www.wikidata.org/wiki/Q1026626","display_name":"Feature extraction","level":2,"score":0.2572000026702881},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.2554999887943268},{"id":"https://openalex.org/C136389625","wikidata":"https://www.wikidata.org/wiki/Q334384","display_name":"Supervised learning","level":3,"score":0.2554999887943268}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/access.2025.3617447","is_oa":true,"landing_page_url":"https://doi.org/10.1109/access.2025.3617447","pdf_url":null,"source":{"id":"https://openalex.org/S2485537415","display_name":"IEEE Access","issn_l":"2169-3536","issn":["2169-3536"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Access","raw_type":"journal-article"},{"id":"pmh:oai:doaj.org/article:d5b04d6cc52949a186861c6811d38943","is_oa":true,"landing_page_url":"https://doaj.org/article/d5b04d6cc52949a186861c6811d38943","pdf_url":null,"source":{"id":"https://openalex.org/S112646816","display_name":"SHILAP Revista de lepidopterolog\u00eda","issn_l":"0300-5267","issn":["0300-5267","2340-4078"],"is_oa":true,"is_in_doaj":true,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"IEEE Access, Vol 13, Pp 173909-173922 (2025)","raw_type":"article"}],"best_oa_location":{"id":"doi:10.1109/access.2025.3617447","is_oa":true,"landing_page_url":"https://doi.org/10.1109/access.2025.3617447","pdf_url":null,"source":{"id":"https://openalex.org/S2485537415","display_name":"IEEE Access","issn_l":"2169-3536","issn":["2169-3536"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Access","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2867598600","display_name":null,"funder_award_id":"JP21H04907","funder_id":"https://openalex.org/F4320334764","funder_display_name":"Japan Society for the Promotion of Science"},{"id":"https://openalex.org/G3591068558","display_name":null,"funder_award_id":"JPMJCR24U3","funder_id":"https://openalex.org/F4320334789","funder_display_name":"Japan Science and Technology Agency"},{"id":"https://openalex.org/G4020452945","display_name":null,"funder_award_id":"JP24H00732","funder_id":"https://openalex.org/F4320334764","funder_display_name":"Japan Society for the Promotion of Science"},{"id":"https://openalex.org/G6324769968","display_name":null,"funder_award_id":"JPMJCR18A6","funder_id":"https://openalex.org/F4320334789","funder_display_name":"Japan Science and Technology Agency"},{"id":"https://openalex.org/G7399311858","display_name":null,"funder_award_id":"JPMJKP24C2","funder_id":"https://openalex.org/F4320334789","funder_display_name":"Japan Science and Technology Agency"},{"id":"https://openalex.org/G8963049961","display_name":null,"funder_award_id":"JPMJCR20D3","funder_id":"https://openalex.org/F4320334789","funder_display_name":"Japan Science and Technology Agency"}],"funders":[{"id":"https://openalex.org/F4320334764","display_name":"Japan Society for the Promotion of Science","ror":"https://ror.org/00hhkn466"},{"id":"https://openalex.org/F4320334789","display_name":"Japan Science and Technology Agency","ror":"https://ror.org/00097mb19"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Although":[0],"deepfake":[1],"detection":[2,20,83,171],"methodologies":[3],"have":[4],"advanced":[5],"considerably,":[6],"they":[7],"remain":[8],"susceptible":[9,31],"to":[10,32,43,71],"evasion":[11,84,163],"techniques,":[12],"a":[13,41,54,76,86,105],"critical":[14],"vulnerability":[15],"in":[16,48,124,183],"forensic":[17,139,185],"systems.":[18],"Most":[19],"approaches":[21],"that":[22,59],"rely":[23],"on":[24],"generator-specific":[25],"artifacts":[26,99],"or":[27,147],"high-frequency":[28],"fingerprints":[29],"become":[30],"circumvention":[33],"when":[34],"these":[35],"discriminative":[36],"features":[37],"are":[38],"eliminated.":[39],"As":[40],"means":[42],"expose":[44],"such":[45],"blind":[46],"spots":[47],"state-of-the-art":[49,162],"forensics,":[50],"we":[51],"introduce":[52],"GenPure,":[53],"novel":[55],"multi-stage":[56],"purification":[57],"framework":[58,142],"systematically":[60],"removes":[61],"both":[62],"low-":[63],"and":[64,135,150,156,170,187],"high-level":[65],"synthetic":[66,98],"cues,":[67],"enabling":[68],"generated":[69],"images":[70,115],"bypass":[72],"diverse":[73],"detectors":[74],"under":[75],"strict":[77],"black-box":[78],"setting.":[79],"In":[80],"the":[81,113,189],"GenPure":[82],"pipeline,":[85],"U-Net-based":[87],"reconstruction":[88],"module":[89],"with":[90,116],"multi-scale,":[91],"spatially":[92],"adaptive":[93],"Gaussian":[94],"kernels":[95],"first":[96],"attenuates":[97],"while":[100],"preserving":[101],"perceptual":[102],"fidelity.":[103],"Next,":[104],"vision":[106],"foundation":[107],"model\u2014intentionally":[108],"unbiased":[109],"toward":[110],"authentic-synthetic":[111],"classification\u2014aligns":[112],"attenuated":[114],"authentic":[117],"image":[118],"characteristics":[119],"by":[120],"minimizing":[121],"distribution":[122],"discrepancies":[123],"latent":[125],"space.":[126],"Finally,":[127],"reference-guided":[128],"statistical":[129],"color":[130],"recalibration":[131],"restores":[132],"natural":[133],"tone":[134],"further":[136],"masks":[137],"residual":[138],"cues.":[140],"The":[141,177],"requires":[143],"no":[144],"detector":[145],"knowledge":[146],"additional":[148],"training":[149],"generalizes":[151],"across":[152,165],"generator":[153],"types,":[154],"resolutions,":[155],"content":[157],"domains.":[158],"Extensive":[159],"experiments":[160],"demonstrated":[161],"performance":[164],"multiple":[166],"unseen":[167],"generative":[168],"sources":[169],"systems":[172],"without":[173],"degrading":[174],"visual":[175],"quality.":[176],"results":[178],"exposed":[179],"persistent":[180],"structural":[181],"weaknesses":[182],"current":[184],"pipelines":[186],"underscore":[188],"need":[190],"for":[191],"semantically":[192],"grounded,":[193],"manipulation-invariant":[194],"defenses.":[195]},"counts_by_year":[],"updated_date":"2026-04-09T08:11:56.329763","created_date":"2025-10-10T00:00:00"}
