{"id":"https://openalex.org/W4415708493","doi":"https://doi.org/10.1109/icme59968.2025.11208981","title":"Transferable Attack against Face Swapping in an Extended Space","display_name":"Transferable Attack against Face Swapping in an Extended Space","publication_year":2025,"publication_date":"2025-06-30","ids":{"openalex":"https://openalex.org/W4415708493","doi":"https://doi.org/10.1109/icme59968.2025.11208981"},"language":null,"primary_location":{"id":"doi:10.1109/icme59968.2025.11208981","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icme59968.2025.11208981","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE International Conference on Multimedia and Expo (ICME)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5113036565","display_name":"Mingzhi Lyu","orcid":null},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":true,"raw_author_name":"Mingzhi Lyu","raw_affiliation_strings":["Nanyang Technological University,Singapore"],"affiliations":[{"raw_affiliation_string":"Nanyang Technological University,Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100769285","display_name":"Yi Huang","orcid":"https://orcid.org/0000-0002-4920-4333"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Yi Huang","raw_affiliation_strings":["Nanyang Technological University,Singapore"],"affiliations":[{"raw_affiliation_string":"Nanyang Technological University,Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5076422826","display_name":"Jun Xie","orcid":"https://orcid.org/0000-0002-4620-053X"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Jun Xie","raw_affiliation_strings":["Nanyang Technological University,Singapore"],"affiliations":[{"raw_affiliation_string":"Nanyang Technological University,Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101419678","display_name":"Zihao Zhao","orcid":"https://orcid.org/0000-0003-2424-3368"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Zihao Zhao","raw_affiliation_strings":["Nanyang Technological University,Singapore"],"affiliations":[{"raw_affiliation_string":"Nanyang Technological University,Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5056117422","display_name":"Hong Xu","orcid":"https://orcid.org/0000-0003-1389-5408"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Hong Xu","raw_affiliation_strings":["Nanyang Technological University,Singapore"],"affiliations":[{"raw_affiliation_string":"Nanyang Technological University,Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5067652863","display_name":"Kelly McCutcheon Adams","orcid":"https://orcid.org/0000-0001-9369-7836"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Kong Wai-Kin Adams","raw_affiliation_strings":["Nanyang Technological University,Singapore"],"affiliations":[{"raw_affiliation_string":"Nanyang Technological University,Singapore","institution_ids":["https://openalex.org/I172675005"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5113036565"],"corresponding_institution_ids":["https://openalex.org/I172675005"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.17534436,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.6984999775886536,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.6984999775886536,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10775","display_name":"Generative Adversarial Networks and Image Synthesis","score":0.12240000069141388,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11448","display_name":"Face recognition and analysis","score":0.06520000100135803,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.6180999875068665},{"id":"https://openalex.org/keywords/face","display_name":"Face (sociological concept)","score":0.5277000069618225},{"id":"https://openalex.org/keywords/scheme","display_name":"Scheme (mathematics)","score":0.49619999527931213},{"id":"https://openalex.org/keywords/identity","display_name":"Identity (music)","score":0.492900013923645},{"id":"https://openalex.org/keywords/function","display_name":"Function (biology)","score":0.4634000062942505},{"id":"https://openalex.org/keywords/space","display_name":"Space (punctuation)","score":0.42879998683929443},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.36340001225471497}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7085999846458435},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.6180999875068665},{"id":"https://openalex.org/C2779304628","wikidata":"https://www.wikidata.org/wiki/Q3503480","display_name":"Face (sociological concept)","level":2,"score":0.5277000069618225},{"id":"https://openalex.org/C77618280","wikidata":"https://www.wikidata.org/wiki/Q1155772","display_name":"Scheme (mathematics)","level":2,"score":0.49619999527931213},{"id":"https://openalex.org/C2778355321","wikidata":"https://www.wikidata.org/wiki/Q17079427","display_name":"Identity (music)","level":2,"score":0.492900013923645},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.48260000348091125},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.46389999985694885},{"id":"https://openalex.org/C14036430","wikidata":"https://www.wikidata.org/wiki/Q3736076","display_name":"Function (biology)","level":2,"score":0.4634000062942505},{"id":"https://openalex.org/C2778572836","wikidata":"https://www.wikidata.org/wiki/Q380933","display_name":"Space (punctuation)","level":2,"score":0.42879998683929443},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.36340001225471497},{"id":"https://openalex.org/C2779530757","wikidata":"https://www.wikidata.org/wiki/Q1207505","display_name":"Quality (philosophy)","level":2,"score":0.33079999685287476},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.32170000672340393},{"id":"https://openalex.org/C31510193","wikidata":"https://www.wikidata.org/wiki/Q1192553","display_name":"Facial recognition system","level":3,"score":0.3068999946117401},{"id":"https://openalex.org/C59519942","wikidata":"https://www.wikidata.org/wiki/Q650665","display_name":"Drone","level":2,"score":0.30309998989105225},{"id":"https://openalex.org/C65856478","wikidata":"https://www.wikidata.org/wiki/Q3991682","display_name":"Attack model","level":2,"score":0.28360000252723694},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.28349998593330383},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.25999999046325684},{"id":"https://openalex.org/C55020928","wikidata":"https://www.wikidata.org/wiki/Q3813865","display_name":"Image quality","level":3,"score":0.25699999928474426}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/icme59968.2025.11208981","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icme59968.2025.11208981","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE International Conference on Multimedia and Expo (ICME)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":21,"referenced_works":["https://openalex.org/W2969542116","https://openalex.org/W2969985801","https://openalex.org/W2985680131","https://openalex.org/W3025573667","https://openalex.org/W3034301684","https://openalex.org/W3035575176","https://openalex.org/W3043844802","https://openalex.org/W3092709185","https://openalex.org/W3127084502","https://openalex.org/W3164572690","https://openalex.org/W3173080248","https://openalex.org/W3174171554","https://openalex.org/W3176406820","https://openalex.org/W3189402954","https://openalex.org/W3204817308","https://openalex.org/W4312914048","https://openalex.org/W4365420523","https://openalex.org/W4382462760","https://openalex.org/W4386075501","https://openalex.org/W4393379880","https://openalex.org/W4407837644"],"related_works":[],"abstract_inverted_index":{"Although":[0],"deep":[1],"Face":[2],"Swapping":[3],"(FS)":[4],"models":[5,49],"may":[6],"benefit":[7],"the":[8,68,84,104,109,112,150,153],"entertainment":[9],"industry,":[10],"they":[11],"pose":[12],"severe":[13],"threats":[14],"to":[15,33,66,138],"privacy":[16],"and":[17,24,63,118,170,188],"security.":[18],"Existing":[19],"protections,":[20],"including":[21,168],"deepfake":[22],"detection":[23],"adversarial":[25,96],"perturbation,":[26],"are":[27,123],"either":[28],"passive":[29],"responses":[30],"or":[31],"ineffective":[32],"unseen":[34],"subject-agnostic":[35,47,73,165],"FS":[36,48,74,136,166,172],"models.":[37,75],"In":[38,142],"this":[39],"paper,":[40],"we":[41],"propose":[42],"a":[43,56,134,144],"transferable":[44],"attack":[45,53,85,154,185],"against":[46],"named":[50],"Additive":[51],"Identity":[52],"based":[54],"on":[55],"Relighting":[57],"function":[58],"(AIR).":[59],"AIR":[60,130,176],"leverages":[61],"reillumination":[62],"additive":[64],"perturbations":[65,82],"mislead":[67],"identity":[69],"extraction":[70],"modules":[71],"in":[72,181],"By":[76],"using":[77,158],"these":[78],"two":[79],"types":[80],"of":[81,111,152,183],"simultaneously,":[83],"space":[86],"is":[87,147],"extended":[88],"such":[89],"that":[90,175],"stronger":[91],"but":[92],"more":[93],"visually":[94],"natural":[95],"examples":[97],"can":[98],"be":[99],"identified.":[100],"To":[101],"further":[102],"enhance":[103],"visual":[105],"quality":[106],"while":[107],"preserving":[108],"effectiveness":[110],"attack,":[113],"an":[114,119],"adaptive":[115],"translation-invariant":[116],"operation":[117],"illumination":[120],"control":[121],"scheme":[122],"designed":[124],"for":[125,149],"AIR.":[126],"Unlike":[127],"other":[128],"methods,":[129],"does":[131],"not":[132],"require":[133],"surrogate":[135],"model":[137],"achieve":[139],"high":[140],"transferability.":[141],"addition,":[143],"mathematical":[145],"proof":[146],"given":[148],"extension":[151],"space.":[155],"Extensive":[156],"experiments":[157],"1000":[159],"image":[160,189],"pairs":[161],"across":[162],"various":[163],"state-of-the-art":[164],"models,":[167,173],"GAN":[169],"diffusion-based":[171],"show":[174],"surpasses":[177],"all":[178],"existing":[179],"attacks":[180],"terms":[182],"both":[184],"success":[186],"rate":[187],"quality.":[190]},"counts_by_year":[],"updated_date":"2026-03-07T16:01:11.037858","created_date":"2025-10-30T00:00:00"}
