{"id":"https://openalex.org/W7117476364","doi":"https://doi.org/10.1109/dicta68720.2025.11302421","title":"Investigating Adversarial Robustness Against Preprocessing Used in Blackbox Face Recognition","display_name":"Investigating Adversarial Robustness Against Preprocessing Used in Blackbox Face Recognition","publication_year":2025,"publication_date":"2025-12-03","ids":{"openalex":"https://openalex.org/W7117476364","doi":"https://doi.org/10.1109/dicta68720.2025.11302421"},"language":null,"primary_location":{"id":"doi:10.1109/dicta68720.2025.11302421","is_oa":false,"landing_page_url":"https://doi.org/10.1109/dicta68720.2025.11302421","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 International Conference on Digital Image Computing: Techniques and Applications (DICTA)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5040400519","display_name":"Roland Croft","orcid":"https://orcid.org/0000-0001-5011-6587"},"institutions":[{"id":"https://openalex.org/I4210137895","display_name":"Scientific Fishery Systems (United States)","ror":"https://ror.org/03y4r3n15","country_code":"US","type":"company","lineage":["https://openalex.org/I4210137895"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Roland Croft","raw_affiliation_strings":["Swordfish Computing,Adelaide,Australia"],"affiliations":[{"raw_affiliation_string":"Swordfish Computing,Adelaide,Australia","institution_ids":["https://openalex.org/I4210137895"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5121473015","display_name":"Brian Du","orcid":null},"institutions":[{"id":"https://openalex.org/I4210137895","display_name":"Scientific Fishery Systems (United States)","ror":"https://ror.org/03y4r3n15","country_code":"US","type":"company","lineage":["https://openalex.org/I4210137895"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Brian Du","raw_affiliation_strings":["Swordfish Computing,Adelaide,Australia"],"affiliations":[{"raw_affiliation_string":"Swordfish Computing,Adelaide,Australia","institution_ids":["https://openalex.org/I4210137895"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5012815249","display_name":"D Raja Joseph","orcid":null},"institutions":[{"id":"https://openalex.org/I4210137895","display_name":"Scientific Fishery Systems (United States)","ror":"https://ror.org/03y4r3n15","country_code":"US","type":"company","lineage":["https://openalex.org/I4210137895"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Darcy Joseph","raw_affiliation_strings":["Swordfish Computing,Adelaide,Australia"],"affiliations":[{"raw_affiliation_string":"Swordfish Computing,Adelaide,Australia","institution_ids":["https://openalex.org/I4210137895"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5121504432","display_name":"Sharath Kumar","orcid":null},"institutions":[{"id":"https://openalex.org/I4210137895","display_name":"Scientific Fishery Systems (United States)","ror":"https://ror.org/03y4r3n15","country_code":"US","type":"company","lineage":["https://openalex.org/I4210137895"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Sharath Kumar","raw_affiliation_strings":["Swordfish Computing,Adelaide,Australia"],"affiliations":[{"raw_affiliation_string":"Swordfish Computing,Adelaide,Australia","institution_ids":["https://openalex.org/I4210137895"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5040400519"],"corresponding_institution_ids":["https://openalex.org/I4210137895"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.84324739,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"8"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9021999835968018,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9021999835968018,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11448","display_name":"Face recognition and analysis","score":0.059700001031160355,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.005499999970197678,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/preprocessor","display_name":"Preprocessor","score":0.7789000272750854},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.7560999989509583},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.5764999985694885},{"id":"https://openalex.org/keywords/transferability","display_name":"Transferability","score":0.5374000072479248},{"id":"https://openalex.org/keywords/face","display_name":"Face (sociological concept)","score":0.5356000065803528},{"id":"https://openalex.org/keywords/facial-recognition-system","display_name":"Facial recognition system","score":0.529699981212616},{"id":"https://openalex.org/keywords/upsampling","display_name":"Upsampling","score":0.5055999755859375},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.4853000044822693},{"id":"https://openalex.org/keywords/feature","display_name":"Feature (linguistics)","score":0.3797000050544739}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8414000272750854},{"id":"https://openalex.org/C34736171","wikidata":"https://www.wikidata.org/wiki/Q918333","display_name":"Preprocessor","level":2,"score":0.7789000272750854},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.7560999989509583},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6682000160217285},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.5764999985694885},{"id":"https://openalex.org/C61272859","wikidata":"https://www.wikidata.org/wiki/Q7834031","display_name":"Transferability","level":3,"score":0.5374000072479248},{"id":"https://openalex.org/C2779304628","wikidata":"https://www.wikidata.org/wiki/Q3503480","display_name":"Face (sociological concept)","level":2,"score":0.5356000065803528},{"id":"https://openalex.org/C31510193","wikidata":"https://www.wikidata.org/wiki/Q1192553","display_name":"Facial recognition system","level":3,"score":0.529699981212616},{"id":"https://openalex.org/C110384440","wikidata":"https://www.wikidata.org/wiki/Q1143270","display_name":"Upsampling","level":3,"score":0.5055999755859375},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.4853000044822693},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.4251999855041504},{"id":"https://openalex.org/C2776401178","wikidata":"https://www.wikidata.org/wiki/Q12050496","display_name":"Feature (linguistics)","level":2,"score":0.3797000050544739},{"id":"https://openalex.org/C99498987","wikidata":"https://www.wikidata.org/wiki/Q2210247","display_name":"Noise (video)","level":3,"score":0.3686000108718872},{"id":"https://openalex.org/C4641261","wikidata":"https://www.wikidata.org/wiki/Q11681085","display_name":"Face detection","level":4,"score":0.36059999465942383},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.35679998993873596},{"id":"https://openalex.org/C103278499","wikidata":"https://www.wikidata.org/wiki/Q254465","display_name":"Similarity (geometry)","level":3,"score":0.3562000095844269},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.3529999852180481},{"id":"https://openalex.org/C184297639","wikidata":"https://www.wikidata.org/wiki/Q177765","display_name":"Biometrics","level":2,"score":0.3490999937057495},{"id":"https://openalex.org/C54654163","wikidata":"https://www.wikidata.org/wiki/Q5428359","display_name":"Face hallucination","level":5,"score":0.334199994802475},{"id":"https://openalex.org/C52622490","wikidata":"https://www.wikidata.org/wiki/Q1026626","display_name":"Feature extraction","level":2,"score":0.32280001044273376},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.3133000135421753},{"id":"https://openalex.org/C49937458","wikidata":"https://www.wikidata.org/wiki/Q2599292","display_name":"Probabilistic logic","level":2,"score":0.30000001192092896},{"id":"https://openalex.org/C116834253","wikidata":"https://www.wikidata.org/wiki/Q2039217","display_name":"Identification (biology)","level":2,"score":0.29100000858306885},{"id":"https://openalex.org/C191070858","wikidata":"https://www.wikidata.org/wiki/Q5428343","display_name":"Face Recognition Grand Challenge","level":5,"score":0.2881999909877777},{"id":"https://openalex.org/C28490314","wikidata":"https://www.wikidata.org/wiki/Q189436","display_name":"Speech recognition","level":1,"score":0.2741999924182892},{"id":"https://openalex.org/C168167062","wikidata":"https://www.wikidata.org/wiki/Q1117970","display_name":"Component (thermodynamics)","level":2,"score":0.27309998869895935},{"id":"https://openalex.org/C137800194","wikidata":"https://www.wikidata.org/wiki/Q11713455","display_name":"Interpolation (computer graphics)","level":3,"score":0.26980000734329224},{"id":"https://openalex.org/C86251818","wikidata":"https://www.wikidata.org/wiki/Q816754","display_name":"Benchmarking","level":2,"score":0.26440000534057617},{"id":"https://openalex.org/C65856478","wikidata":"https://www.wikidata.org/wiki/Q3991682","display_name":"Attack model","level":2,"score":0.2621999979019165},{"id":"https://openalex.org/C83665646","wikidata":"https://www.wikidata.org/wiki/Q42139305","display_name":"Feature vector","level":2,"score":0.2621000111103058}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/dicta68720.2025.11302421","is_oa":false,"landing_page_url":"https://doi.org/10.1109/dicta68720.2025.11302421","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 International Conference on Digital Image Computing: Techniques and Applications (DICTA)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.7056538462638855}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":29,"referenced_works":["https://openalex.org/W2096733369","https://openalex.org/W2164943005","https://openalex.org/W2341528187","https://openalex.org/W2603766943","https://openalex.org/W2774644650","https://openalex.org/W2962847335","https://openalex.org/W2962858109","https://openalex.org/W2963037989","https://openalex.org/W2963542245","https://openalex.org/W2969542116","https://openalex.org/W2969985801","https://openalex.org/W2999711171","https://openalex.org/W3034552680","https://openalex.org/W3039398238","https://openalex.org/W3173324345","https://openalex.org/W3179647175","https://openalex.org/W3189402954","https://openalex.org/W3193394794","https://openalex.org/W4210320493","https://openalex.org/W4304014846","https://openalex.org/W4384518911","https://openalex.org/W4385376941","https://openalex.org/W4390871946","https://openalex.org/W4393078693","https://openalex.org/W4395960521","https://openalex.org/W4400360724","https://openalex.org/W4402623739","https://openalex.org/W4413145971","https://openalex.org/W4417249523"],"related_works":[],"abstract_inverted_index":{"Face":[0],"Recognition":[1],"(FR)":[2],"models":[3],"have":[4],"been":[5],"shown":[6],"to":[7,10,43,82,122,154,188],"be":[8],"vulnerable":[9],"adversarial":[11,64,90,210,214],"examples":[12],"that":[13,70,107,139,178],"subtly":[14],"alter":[15],"benign":[16],"facial":[17,40,143,213],"images,":[18],"exposing":[19],"blind":[20],"spots":[21],"in":[22,76,101,149,198],"these":[23,168],"systems,":[24,61,200],"as":[25,27],"well":[26],"protecting":[28],"user":[29],"privacy.":[30],"End-to-end":[31],"FR":[32,60,93,199],"systems":[33],"first":[34],"obtain":[35],"preprocessed":[36],"faces":[37],"from":[38],"diverse":[39],"imagery":[41],"prior":[42],"computing":[44],"the":[45,48,84,108,116,140,155,180,183,194,202,209],"similarity":[46],"of":[47,59,86,110,127,158,182,196,212],"deep":[49],"feature":[50],"embeddings.":[51],"Whilst":[52],"face":[53,111,163],"preprocessing":[54,72,98,144,197],"is":[55,73],"a":[56,102,150,172],"critical":[57],"component":[58],"and":[62,201],"hence":[63],"attacks":[65,91,185],"against":[66,92,96,162],"them,":[67],"we":[68,137,170],"observe":[69,106],"this":[71],"often":[74],"overlooked":[75],"blackbox":[77,103],"settings.":[78],"Our":[79,191],"study":[80],"seeks":[81],"investigate":[83],"transferability":[85,181],"several":[87],"out-of-the-box":[88],"state-of-the-art":[89],"when":[94],"applied":[95],"different":[97],"techniques":[99],"used":[100],"setting.":[104],"We":[105],"choice":[109,126],"detection":[112,164],"model":[113],"can":[114],"degrade":[115],"attack":[117,147],"success":[118],"rate":[119],"by":[120,186],"up":[121,187],"78":[123],"%,":[124],"whereas":[125],"interpolation":[128],"method":[129,174],"during":[130],"downsampling":[131],"has":[132],"relatively":[133],"minimal":[134],"impacts.":[135],"Furthermore,":[136],"find":[138],"requirement":[141],"for":[142,204],"even":[145],"degrades":[146],"strength":[148],"whitebox":[151],"setting,":[152],"due":[153],"unintended":[156],"interaction":[157],"produced":[159],"noise":[160],"vectors":[161],"models.":[165],"Based":[166],"on":[167],"findings,":[169],"propose":[171],"preprocessing-invariant":[173],"using":[175],"input":[176],"transformations":[177],"improves":[179],"studied":[184],"27":[189],"%.":[190],"findings":[192],"highlight":[193],"importance":[195],"need":[203],"its":[205],"consideration":[206],"towards":[207],"improving":[208],"generalisation":[211],"examples.":[215]},"counts_by_year":[],"updated_date":"2025-12-30T23:08:21.542490","created_date":"2025-12-29T00:00:00"}
