{"id":"https://openalex.org/W3185895259","doi":"https://doi.org/10.1109/ijcb52358.2021.9484380","title":"Universal Adversarial Spoofing Attacks against Face Recognition","display_name":"Universal Adversarial Spoofing Attacks against Face Recognition","publication_year":2021,"publication_date":"2021-07-20","ids":{"openalex":"https://openalex.org/W3185895259","doi":"https://doi.org/10.1109/ijcb52358.2021.9484380","mag":"3185895259"},"language":"en","primary_location":{"id":"doi:10.1109/ijcb52358.2021.9484380","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcb52358.2021.9484380","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 IEEE International Joint Conference on Biometrics (IJCB)","raw_type":"proceedings-article"},"type":"article","indexed_in":["arxiv","crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2110.00708","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":null,"display_name":"Takuma Amada","orcid":null},"institutions":[{"id":"https://openalex.org/I118347220","display_name":"NEC (Japan)","ror":"https://ror.org/04jndar25","country_code":"JP","type":"company","lineage":["https://openalex.org/I118347220"]}],"countries":["JP"],"is_corresponding":true,"raw_author_name":"Takuma Amada","raw_affiliation_strings":["NEC Corporation, Tokyo, Japan"],"affiliations":[{"raw_affiliation_string":"NEC Corporation, Tokyo, Japan","institution_ids":["https://openalex.org/I118347220"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Seng Pei Liew","orcid":null},"institutions":[{"id":"https://openalex.org/I118347220","display_name":"NEC (Japan)","ror":"https://ror.org/04jndar25","country_code":"JP","type":"company","lineage":["https://openalex.org/I118347220"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Seng Pei Liew","raw_affiliation_strings":["NEC Corporation, Tokyo, Japan"],"affiliations":[{"raw_affiliation_string":"NEC Corporation, Tokyo, Japan","institution_ids":["https://openalex.org/I118347220"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Kazuya Kakizaki","orcid":null},"institutions":[{"id":"https://openalex.org/I118347220","display_name":"NEC (Japan)","ror":"https://ror.org/04jndar25","country_code":"JP","type":"company","lineage":["https://openalex.org/I118347220"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Kazuya Kakizaki","raw_affiliation_strings":["NEC Corporation, Tokyo, Japan"],"affiliations":[{"raw_affiliation_string":"NEC Corporation, Tokyo, Japan","institution_ids":["https://openalex.org/I118347220"]}]},{"author_position":"last","author":{"id":null,"display_name":"Toshinori Araki","orcid":null},"institutions":[{"id":"https://openalex.org/I118347220","display_name":"NEC (Japan)","ror":"https://ror.org/04jndar25","country_code":"JP","type":"company","lineage":["https://openalex.org/I118347220"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Toshinori Araki","raw_affiliation_strings":["NEC Corporation, Tokyo, Japan"],"affiliations":[{"raw_affiliation_string":"NEC Corporation, Tokyo, Japan","institution_ids":["https://openalex.org/I118347220"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":["https://openalex.org/I118347220"],"apc_list":null,"apc_paid":null,"fwci":0.6155,"has_fulltext":false,"cited_by_count":8,"citation_normalized_percentile":{"value":0.66729323,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"7"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10828","display_name":"Biometric Identification and Security","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10828","display_name":"Biometric Identification and Security","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11448","display_name":"Face recognition and analysis","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9668999910354614,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/face","display_name":"Face (sociological concept)","score":0.723800003528595},{"id":"https://openalex.org/keywords/facial-recognition-system","display_name":"Facial recognition system","score":0.6643999814987183},{"id":"https://openalex.org/keywords/feature","display_name":"Feature (linguistics)","score":0.5989000201225281},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.5559999942779541},{"id":"https://openalex.org/keywords/spoofing-attack","display_name":"Spoofing attack","score":0.5331000089645386},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.5213000178337097},{"id":"https://openalex.org/keywords/representation","display_name":"Representation (politics)","score":0.5013999938964844},{"id":"https://openalex.org/keywords/pixel","display_name":"Pixel","score":0.4474000036716461}],"concepts":[{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.7544999718666077},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7519999742507935},{"id":"https://openalex.org/C2779304628","wikidata":"https://www.wikidata.org/wiki/Q3503480","display_name":"Face (sociological concept)","level":2,"score":0.723800003528595},{"id":"https://openalex.org/C31510193","wikidata":"https://www.wikidata.org/wiki/Q1192553","display_name":"Facial recognition system","level":3,"score":0.6643999814987183},{"id":"https://openalex.org/C2776401178","wikidata":"https://www.wikidata.org/wiki/Q12050496","display_name":"Feature (linguistics)","level":2,"score":0.5989000201225281},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.5577999949455261},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.5559999942779541},{"id":"https://openalex.org/C167900197","wikidata":"https://www.wikidata.org/wiki/Q11081100","display_name":"Spoofing attack","level":2,"score":0.5331000089645386},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.5213000178337097},{"id":"https://openalex.org/C2776359362","wikidata":"https://www.wikidata.org/wiki/Q2145286","display_name":"Representation (politics)","level":3,"score":0.5013999938964844},{"id":"https://openalex.org/C160633673","wikidata":"https://www.wikidata.org/wiki/Q355198","display_name":"Pixel","level":2,"score":0.4474000036716461},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.4424000084400177},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.4296000003814697},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.3953000009059906},{"id":"https://openalex.org/C2778355321","wikidata":"https://www.wikidata.org/wiki/Q17079427","display_name":"Identity (music)","level":2,"score":0.3813999891281128},{"id":"https://openalex.org/C52622490","wikidata":"https://www.wikidata.org/wiki/Q1026626","display_name":"Feature extraction","level":2,"score":0.3736000061035156},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.3637000024318695},{"id":"https://openalex.org/C184297639","wikidata":"https://www.wikidata.org/wiki/Q177765","display_name":"Biometrics","level":2,"score":0.35679998993873596},{"id":"https://openalex.org/C88799230","wikidata":"https://www.wikidata.org/wiki/Q3398329","display_name":"Three-dimensional face recognition","level":5,"score":0.3303999900817871},{"id":"https://openalex.org/C4641261","wikidata":"https://www.wikidata.org/wiki/Q11681085","display_name":"Face detection","level":4,"score":0.2728999853134155},{"id":"https://openalex.org/C116834253","wikidata":"https://www.wikidata.org/wiki/Q2039217","display_name":"Identification (biology)","level":2,"score":0.27070000767707825},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.2572999894618988},{"id":"https://openalex.org/C191070858","wikidata":"https://www.wikidata.org/wiki/Q5428343","display_name":"Face Recognition Grand Challenge","level":5,"score":0.25619998574256897}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/ijcb52358.2021.9484380","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcb52358.2021.9484380","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 IEEE International Joint Conference on Biometrics (IJCB)","raw_type":"proceedings-article"},{"id":"pmh:oai:arXiv.org:2110.00708","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2110.00708","pdf_url":"https://arxiv.org/pdf/2110.00708","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2110.00708","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2110.00708","pdf_url":"https://arxiv.org/pdf/2110.00708","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":28,"referenced_works":["https://openalex.org/W1581565303","https://openalex.org/W2096733369","https://openalex.org/W2145287260","https://openalex.org/W2194775991","https://openalex.org/W2325939864","https://openalex.org/W2341528187","https://openalex.org/W2535873859","https://openalex.org/W2543927648","https://openalex.org/W2762664271","https://openalex.org/W2897177022","https://openalex.org/W2962898354","https://openalex.org/W2963466847","https://openalex.org/W2963839617","https://openalex.org/W2963857521","https://openalex.org/W2969985801","https://openalex.org/W2972532204","https://openalex.org/W2972986629","https://openalex.org/W6630649318","https://openalex.org/W6637162671","https://openalex.org/W6637373629","https://openalex.org/W6640425456","https://openalex.org/W6681239517","https://openalex.org/W6726453277","https://openalex.org/W6729756640","https://openalex.org/W6739868092","https://openalex.org/W6756248165","https://openalex.org/W6764398973","https://openalex.org/W6779038034"],"related_works":[],"abstract_inverted_index":{"We":[0,16],"assess":[1],"the":[2,21,36,53,69],"vulnerabilities":[3],"of":[4,68],"deep":[5,22,94],"face":[6,28,47,54,138],"recognition":[7,139],"systems":[8],"for":[9],"images":[10],"that":[11,52,76,99,122],"falsify/spoof":[12],"multiple":[13,58],"identities":[14,60,86,108],"simultaneously.":[15],"demonstrate":[17],"that,":[18],"by":[19],"manipulating":[20],"feature":[23],"representation":[24],"extracted":[25],"from":[26],"a":[27,46,62,92,123,127],"image":[29,55],"via":[30],"imperceptibly":[31],"small":[32],"perturbations":[33],"added":[34],"at":[35],"pixel":[37],"level":[38],"using":[39],"our":[40,73],"proposed":[41],"method,":[42],"one":[43],"can":[44],"fool":[45],"verification":[48],"system":[49],"into":[50,134],"recognizing":[51],"belongs":[56],"to":[57,103],"different":[59],"with":[61,72],"high":[63],"success":[64],"rate.":[65],"One":[66],"characteristic":[67],"UAXs":[70],"crafted":[71],"method":[74],"is":[75,126],"they":[77,81],"are":[78,82,101],"universal":[79],"(identity-agnostic);":[80],"successful":[83],"even":[84],"against":[85],"not":[87,112],"known":[88,113],"in":[89,117],"advance.":[90],"For":[91],"certain":[93],"neural":[95],"network,":[96],"we":[97,100],"show":[98],"able":[102],"spoof":[104],"almost":[105],"all":[106],"tested":[107],"(99%),":[109],"including":[110],"those":[111],"beforehand":[114],"(not":[115],"included":[116],"training).":[118],"Our":[119],"results":[120],"indicate":[121],"multiple-identity":[124],"attack":[125],"real":[128],"threat":[129],"and":[130],"should":[131],"be":[132],"taken":[133],"account":[135],"when":[136],"deploying":[137],"systems.":[140]},"counts_by_year":[{"year":2025,"cited_by_count":4},{"year":2024,"cited_by_count":2},{"year":2023,"cited_by_count":2}],"updated_date":"2026-03-10T16:38:18.471706","created_date":"2021-08-02T00:00:00"}
