{"id":"https://openalex.org/W3192213611","doi":"https://doi.org/10.1109/tifs.2021.3102492","title":"Effective and Robust Physical-World Attacks on Deep Learning Face Recognition Systems","display_name":"Effective and Robust Physical-World Attacks on Deep Learning Face Recognition Systems","publication_year":2021,"publication_date":"2021-01-01","ids":{"openalex":"https://openalex.org/W3192213611","doi":"https://doi.org/10.1109/tifs.2021.3102492","mag":"3192213611"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2021.3102492","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2021.3102492","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5047030842","display_name":"Meng Shen","orcid":"https://orcid.org/0000-0002-1867-0972"},"institutions":[{"id":"https://openalex.org/I4210136793","display_name":"Peng Cheng Laboratory","ror":"https://ror.org/03qdqbt06","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210136793"]},{"id":"https://openalex.org/I125839683","display_name":"Beijing Institute of Technology","ror":"https://ror.org/01skt4w74","country_code":"CN","type":"education","lineage":["https://openalex.org/I125839683","https://openalex.org/I890469752"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Meng Shen","raw_affiliation_strings":["Peng Cheng Laboratory (PCL), Shenzhen, China","School of Cyberspace Science and Technology, Beijing Institute of Technology, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Peng Cheng Laboratory (PCL), Shenzhen, China","institution_ids":["https://openalex.org/I4210136793"]},{"raw_affiliation_string":"School of Cyberspace Science and Technology, Beijing Institute of Technology, Beijing, China","institution_ids":["https://openalex.org/I125839683"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100647391","display_name":"Hao Yu","orcid":"https://orcid.org/0000-0001-9044-4841"},"institutions":[{"id":"https://openalex.org/I125839683","display_name":"Beijing Institute of Technology","ror":"https://ror.org/01skt4w74","country_code":"CN","type":"education","lineage":["https://openalex.org/I125839683","https://openalex.org/I890469752"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hao Yu","raw_affiliation_strings":["School of Cyberspace Science and Technology, Beijing Institute of Technology, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Cyberspace Science and Technology, Beijing Institute of Technology, Beijing, China","institution_ids":["https://openalex.org/I125839683"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100634361","display_name":"Liehuang Zhu","orcid":"https://orcid.org/0000-0003-3277-3887"},"institutions":[{"id":"https://openalex.org/I125839683","display_name":"Beijing Institute of Technology","ror":"https://ror.org/01skt4w74","country_code":"CN","type":"education","lineage":["https://openalex.org/I125839683","https://openalex.org/I890469752"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Liehuang Zhu","raw_affiliation_strings":["School of Cyberspace Science and Technology, Beijing Institute of Technology, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Cyberspace Science and Technology, Beijing Institute of Technology, Beijing, China","institution_ids":["https://openalex.org/I125839683"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100665814","display_name":"Ke Xu","orcid":"https://orcid.org/0000-0003-2587-8517"},"institutions":[{"id":"https://openalex.org/I4210156423","display_name":"National Engineering Research Center for Information Technology in Agriculture","ror":"https://ror.org/04c3j3t84","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210156423"]},{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]},{"id":"https://openalex.org/I4210136793","display_name":"Peng Cheng Laboratory","ror":"https://ror.org/03qdqbt06","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210136793"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Ke Xu","raw_affiliation_strings":["Beijing National Research Center for Information Science and Technology (BNRist), Beijing, China","Department of Computer Science, Tsinghua University, Beijing, China","Peng Cheng Laboratory, Shenzhen, China"],"affiliations":[{"raw_affiliation_string":"Beijing National Research Center for Information Science and Technology (BNRist), Beijing, China","institution_ids":["https://openalex.org/I4210156423"]},{"raw_affiliation_string":"Department of Computer Science, Tsinghua University, Beijing, China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Peng Cheng Laboratory, Shenzhen, China","institution_ids":["https://openalex.org/I4210136793"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100350165","display_name":"Qi Li","orcid":"https://orcid.org/0000-0001-8776-8730"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Qi Li","raw_affiliation_strings":["Institute for Network Sciences and Cyberspace, Tsinghua University, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Institute for Network Sciences and Cyberspace, Tsinghua University, Beijing, China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5075234257","display_name":"Jiankun Hu","orcid":"https://orcid.org/0000-0003-0230-1432"},"institutions":[{"id":"https://openalex.org/I188329596","display_name":"University of Canberra","ror":"https://ror.org/04s1nv328","country_code":"AU","type":"education","lineage":["https://openalex.org/I188329596"]},{"id":"https://openalex.org/I31746571","display_name":"UNSW Sydney","ror":"https://ror.org/03r8z3t63","country_code":"AU","type":"education","lineage":["https://openalex.org/I31746571"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Jiankun Hu","raw_affiliation_strings":["School of Engineering and Information Technology, University of New South Wales, Canberra, ACT, Australia"],"affiliations":[{"raw_affiliation_string":"School of Engineering and Information Technology, University of New South Wales, Canberra, ACT, Australia","institution_ids":["https://openalex.org/I188329596","https://openalex.org/I31746571"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5047030842"],"corresponding_institution_ids":["https://openalex.org/I125839683","https://openalex.org/I4210136793"],"apc_list":null,"apc_paid":null,"fwci":5.869,"has_fulltext":false,"cited_by_count":52,"citation_normalized_percentile":{"value":0.96764318,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":100},"biblio":{"volume":"16","issue":null,"first_page":"4063","last_page":"4077"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11448","display_name":"Face recognition and analysis","score":0.9890999794006348,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9710999727249146,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8369427919387817},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.8194324970245361},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.8130439519882202},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.6104355454444885},{"id":"https://openalex.org/keywords/generator","display_name":"Generator (circuit theory)","score":0.600884735584259},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5707393288612366},{"id":"https://openalex.org/keywords/facial-recognition-system","display_name":"Facial recognition system","score":0.5185892581939697},{"id":"https://openalex.org/keywords/face","display_name":"Face (sociological concept)","score":0.5131903290748596},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.42244648933410645},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3948999047279358},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.37021586298942566},{"id":"https://openalex.org/keywords/human\u2013computer-interaction","display_name":"Human\u2013computer interaction","score":0.35741549730300903},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.18754878640174866}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8369427919387817},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.8194324970245361},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.8130439519882202},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.6104355454444885},{"id":"https://openalex.org/C2780992000","wikidata":"https://www.wikidata.org/wiki/Q17016113","display_name":"Generator (circuit theory)","level":3,"score":0.600884735584259},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5707393288612366},{"id":"https://openalex.org/C31510193","wikidata":"https://www.wikidata.org/wiki/Q1192553","display_name":"Facial recognition system","level":3,"score":0.5185892581939697},{"id":"https://openalex.org/C2779304628","wikidata":"https://www.wikidata.org/wiki/Q3503480","display_name":"Face (sociological concept)","level":2,"score":0.5131903290748596},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.42244648933410645},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3948999047279358},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.37021586298942566},{"id":"https://openalex.org/C107457646","wikidata":"https://www.wikidata.org/wiki/Q207434","display_name":"Human\u2013computer interaction","level":1,"score":0.35741549730300903},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.18754878640174866},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0},{"id":"https://openalex.org/C36289849","wikidata":"https://www.wikidata.org/wiki/Q34749","display_name":"Social science","level":1,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C163258240","wikidata":"https://www.wikidata.org/wiki/Q25342","display_name":"Power (physics)","level":2,"score":0.0},{"id":"https://openalex.org/C144024400","wikidata":"https://www.wikidata.org/wiki/Q21201","display_name":"Sociology","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tifs.2021.3102492","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2021.3102492","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G3200295808","display_name":null,"funder_award_id":"61825204","funder_id":"https://openalex.org/F4320334953","funder_display_name":"China National Funds for Distinguished Young Scientists"},{"id":"https://openalex.org/G3423709866","display_name":null,"funder_award_id":"61932016","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3505716934","display_name":null,"funder_award_id":"Z201100006820006","funder_id":"https://openalex.org/F4320334978","funder_display_name":"Beijing Nova Program"},{"id":"https://openalex.org/G4633185079","display_name":null,"funder_award_id":"2020YFB1006101","funder_id":"https://openalex.org/F4320335777","funder_display_name":"National Key Research and Development Program of China"},{"id":"https://openalex.org/G595233080","display_name":null,"funder_award_id":"61972039","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6518367120","display_name":null,"funder_award_id":"4192050","funder_id":"https://openalex.org/F4320322919","funder_display_name":"Natural Science Foundation of Beijing Municipality"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320322919","display_name":"Natural Science Foundation of Beijing Municipality","ror":null},{"id":"https://openalex.org/F4320334953","display_name":"China National Funds for Distinguished Young Scientists","ror":"https://ror.org/01pab2602"},{"id":"https://openalex.org/F4320334978","display_name":"Beijing Nova Program","ror":"https://ror.org/034k14f91"},{"id":"https://openalex.org/F4320335777","display_name":"National Key Research and Development Program of China","ror":null}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":59,"referenced_works":["https://openalex.org/W1782590233","https://openalex.org/W2096733369","https://openalex.org/W2325939864","https://openalex.org/W2341528187","https://openalex.org/W2515770085","https://openalex.org/W2535873859","https://openalex.org/W2570685808","https://openalex.org/W2598661187","https://openalex.org/W2603766943","https://openalex.org/W2789352577","https://openalex.org/W2794909680","https://openalex.org/W2798302089","https://openalex.org/W2888791752","https://openalex.org/W2932026309","https://openalex.org/W2952104986","https://openalex.org/W2957499437","https://openalex.org/W2962785568","https://openalex.org/W2962858109","https://openalex.org/W2962879692","https://openalex.org/W2962898354","https://openalex.org/W2963149332","https://openalex.org/W2963428752","https://openalex.org/W2964449965","https://openalex.org/W2969664989","https://openalex.org/W2969985801","https://openalex.org/W2970317235","https://openalex.org/W2973021304","https://openalex.org/W2981011605","https://openalex.org/W2998771449","https://openalex.org/W2999711171","https://openalex.org/W3047561893","https://openalex.org/W3083540668","https://openalex.org/W3091068973","https://openalex.org/W3097206420","https://openalex.org/W3099206234","https://openalex.org/W3100471085","https://openalex.org/W3101267861","https://openalex.org/W3101998545","https://openalex.org/W3110012676","https://openalex.org/W3116203245","https://openalex.org/W3120227884","https://openalex.org/W3124238039","https://openalex.org/W3125713917","https://openalex.org/W3128216282","https://openalex.org/W3154755065","https://openalex.org/W3175552508","https://openalex.org/W4288363925","https://openalex.org/W4295521014","https://openalex.org/W4298090062","https://openalex.org/W6731927902","https://openalex.org/W6735913928","https://openalex.org/W6749300007","https://openalex.org/W6754317590","https://openalex.org/W6761100157","https://openalex.org/W6764550947","https://openalex.org/W6767341848","https://openalex.org/W6772079749","https://openalex.org/W6779628750","https://openalex.org/W6790928923"],"related_works":["https://openalex.org/W2950183588","https://openalex.org/W3080754722","https://openalex.org/W3093978547","https://openalex.org/W2953536436","https://openalex.org/W3203790781","https://openalex.org/W4313346231","https://openalex.org/W2738001131","https://openalex.org/W4285785480","https://openalex.org/W2997056298","https://openalex.org/W4298079292"],"abstract_inverted_index":{"Deep":[0],"neural":[1],"networks":[2],"(DNNs)":[3],"have":[4],"been":[5],"increasingly":[6],"used":[7],"in":[8,30,41,57],"face":[9],"recognition":[10],"(FR)":[11],"systems.":[12,78],"Recent":[13],"studies,":[14],"however,":[15],"show":[16,143],"that":[17,53,71,144],"DNNs":[18],"are":[19,54],"vulnerable":[20],"to":[21,50,75,103,107,113,116,124,168],"adversarial":[22,73],"examples,":[23],"which":[24],"potentially":[25],"mislead":[26],"DNN-based":[27],"FR":[28,77,134],"systems":[29,135],"the":[31,42,58,90,100,114,118,126,154,170],"physical":[32,60],"world.":[33],"Existing":[34],"attacks":[35],"either":[36],"generate":[37,51],"perturbations":[38,52],"working":[39],"merely":[40],"digital":[43],"world,":[44],"or":[45],"rely":[46],"on":[47,130],"customized":[48],"equipment":[49],"not":[55],"robust":[56],"ever-changing":[59],"environment.":[61],"In":[62],"this":[63],"paper,":[64],"we":[65],"propose":[66],"FaceAdv,":[67],"a":[68,83,87,147],"physical-world":[69],"attack":[70],"crafts":[72],"stickers":[74,95,106],"deceive":[76],"It":[79],"mainly":[80],"consists":[81],"of":[82,128,157,172],"sticker":[84],"generator":[85,115],"and":[86,110,139,160],"convertor,":[88],"where":[89],"former":[91],"can":[92,151],"craft":[93],"several":[94],"with":[96,146],"different":[97],"shapes":[98],"while":[99],"latter":[101],"aims":[102],"digitally":[104],"attach":[105],"human":[108],"faces":[109],"provide":[111],"feedback":[112],"improve":[117,153],"effectiveness.":[119],"We":[120,163],"conduct":[121,165],"extensive":[122],"experiments":[123],"evaluate":[125],"effectiveness":[127],"FaceAdv":[129,150],"attacking":[131],"three":[132],"typical":[133],"(i.e.,":[136],"ArcFace,":[137],"CosFace":[138],"FaceNet).":[140],"The":[141],"results":[142],"compared":[145],"state-of-the-art":[148],"attack,":[149],"significantly":[152],"success":[155],"rates":[156],"both":[158],"dodging":[159],"impersonating":[161],"attacks.":[162],"also":[164],"comprehensive":[166],"evaluations":[167],"demonstrate":[169],"robustness":[171],"FaceAdv.":[173]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":8},{"year":2024,"cited_by_count":20},{"year":2023,"cited_by_count":16},{"year":2022,"cited_by_count":5},{"year":2021,"cited_by_count":1}],"updated_date":"2026-03-04T09:10:02.777135","created_date":"2025-10-10T00:00:00"}
