{"id":"https://openalex.org/W4289821784","doi":"https://doi.org/10.1109/tifs.2022.3195384","title":"Perturbation Inactivation Based Adversarial Defense for Face Recognition","display_name":"Perturbation Inactivation Based Adversarial Defense for Face Recognition","publication_year":2022,"publication_date":"2022-01-01","ids":{"openalex":"https://openalex.org/W4289821784","doi":"https://doi.org/10.1109/tifs.2022.3195384"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2022.3195384","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2022.3195384","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5020678950","display_name":"Min Ren","orcid":"https://orcid.org/0000-0002-0126-1726"},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210100255","display_name":"Beijing Academy of Artificial Intelligence","ror":"https://ror.org/016a74861","country_code":"CN","type":"other","lineage":["https://openalex.org/I4210100255"]},{"id":"https://openalex.org/I4210112150","display_name":"Institute of Automation","ror":"https://ror.org/022c3hy66","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210112150"]},{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Min Ren","raw_affiliation_strings":["School of Artificial Intelligence, University of Chinese Academy of Sciences, Beijing, China","National Laboratory of Pattern Recognition, Institute of Automation, Center for Research on Intelligent Perception and Computing, Chinese Academy of Sciences, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Artificial Intelligence, University of Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I4210165038"]},{"raw_affiliation_string":"National Laboratory of Pattern Recognition, Institute of Automation, Center for Research on Intelligent Perception and Computing, Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210112150","https://openalex.org/I19820366"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101559514","display_name":"Yuhao Zhu","orcid":null},"institutions":[{"id":"https://openalex.org/I4210141966","display_name":"China Academy of Railway Sciences","ror":"https://ror.org/051wv2j09","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210141966"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yuhao Zhu","raw_affiliation_strings":["Postgraduate Department, China Academy of Railway Sciences, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Postgraduate Department, China Academy of Railway Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210141966"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100398969","display_name":"Yunlong Wang","orcid":"https://orcid.org/0000-0002-3535-308X"},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210112150","display_name":"Institute of Automation","ror":"https://ror.org/022c3hy66","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210112150"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yunlong Wang","raw_affiliation_strings":["National Laboratory of Pattern Recognition, Center for Research on Intelligent Perception and Computing, Institute of Automation, Chinese Academy of Sciences, Beijing, China","National Laboratory of Pattern Recognition, Institute of Automation, Center for Research on Intelligent Perception and Computing, Chinese Academy of Sciences, Beijing, China"],"affiliations":[{"raw_affiliation_string":"National Laboratory of Pattern Recognition, Center for Research on Intelligent Perception and Computing, Institute of Automation, Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210112150","https://openalex.org/I19820366"]},{"raw_affiliation_string":"National Laboratory of Pattern Recognition, Institute of Automation, Center for Research on Intelligent Perception and Computing, Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210112150","https://openalex.org/I19820366"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5055505703","display_name":"Zhenan Sun","orcid":"https://orcid.org/0000-0003-4029-9935"},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210097554","display_name":"Center for Excellence in Brain Science and Intelligence Technology","ror":"https://ror.org/00vpwhm04","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210097554"]},{"id":"https://openalex.org/I4210112150","display_name":"Institute of Automation","ror":"https://ror.org/022c3hy66","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210112150"]},{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhenan Sun","raw_affiliation_strings":["National Laboratory of Pattern Recognition, Center for Research on Intelligent Perception and Computing, Institute of Automation, Chinese Academy of Sciences, Beijing, China","CAS Center for Excellence in Brain Science and Intelligence Technology School of Artificial Intelligence, University of Chinese Academy of Sciences, Beijing, China","National Laboratory of Pattern Recognition, Institute of Automation, Center for Research on Intelligent Perception and Computing, Chinese Academy of Sciences, Beijing, China"],"affiliations":[{"raw_affiliation_string":"National Laboratory of Pattern Recognition, Center for Research on Intelligent Perception and Computing, Institute of Automation, Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210112150","https://openalex.org/I19820366"]},{"raw_affiliation_string":"CAS Center for Excellence in Brain Science and Intelligence Technology School of Artificial Intelligence, University of Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210097554","https://openalex.org/I4210165038"]},{"raw_affiliation_string":"National Laboratory of Pattern Recognition, Institute of Automation, Center for Research on Intelligent Perception and Computing, Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210112150","https://openalex.org/I19820366"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5020678950"],"corresponding_institution_ids":["https://openalex.org/I19820366","https://openalex.org/I4210100255","https://openalex.org/I4210112150","https://openalex.org/I4210165038"],"apc_list":null,"apc_paid":null,"fwci":2.8958,"has_fulltext":false,"cited_by_count":22,"citation_normalized_percentile":{"value":0.91998084,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":99},"biblio":{"volume":"17","issue":null,"first_page":"2947","last_page":"2962"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9957000017166138,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11307","display_name":"Domain Adaptation and Few-Shot Learning","score":0.958299994468689,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.9426788091659546},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7334941625595093},{"id":"https://openalex.org/keywords/subspace-topology","display_name":"Subspace topology","score":0.7263888120651245},{"id":"https://openalex.org/keywords/linear-subspace","display_name":"Linear subspace","score":0.6271897554397583},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5443276166915894},{"id":"https://openalex.org/keywords/generalization","display_name":"Generalization","score":0.5014932155609131},{"id":"https://openalex.org/keywords/facial-recognition-system","display_name":"Facial recognition system","score":0.4814023971557617},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.4399332106113434},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.37841153144836426},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.27548038959503174},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.1797441840171814}],"concepts":[{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.9426788091659546},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7334941625595093},{"id":"https://openalex.org/C32834561","wikidata":"https://www.wikidata.org/wiki/Q660730","display_name":"Subspace topology","level":2,"score":0.7263888120651245},{"id":"https://openalex.org/C12362212","wikidata":"https://www.wikidata.org/wiki/Q728435","display_name":"Linear subspace","level":2,"score":0.6271897554397583},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5443276166915894},{"id":"https://openalex.org/C177148314","wikidata":"https://www.wikidata.org/wiki/Q170084","display_name":"Generalization","level":2,"score":0.5014932155609131},{"id":"https://openalex.org/C31510193","wikidata":"https://www.wikidata.org/wiki/Q1192553","display_name":"Facial recognition system","level":3,"score":0.4814023971557617},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.4399332106113434},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.37841153144836426},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.27548038959503174},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.1797441840171814},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tifs.2022.3195384","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2022.3195384","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2255493700","display_name":null,"funder_award_id":"62006225","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G382567186","display_name":null,"funder_award_id":"62071468","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6261893707","display_name":null,"funder_award_id":"61622310","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G647925007","display_name":null,"funder_award_id":"XDA27040700","funder_id":"https://openalex.org/F4320321133","funder_display_name":"Chinese Academy of Sciences"},{"id":"https://openalex.org/G8525382974","display_name":null,"funder_award_id":"U1836217","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320321133","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":85,"referenced_works":["https://openalex.org/W1536680647","https://openalex.org/W1673923490","https://openalex.org/W1686810756","https://openalex.org/W1901129140","https://openalex.org/W1903029394","https://openalex.org/W1945616565","https://openalex.org/W1959608418","https://openalex.org/W1998808035","https://openalex.org/W2096733369","https://openalex.org/W2097117768","https://openalex.org/W2112796928","https://openalex.org/W2119717200","https://openalex.org/W2145287260","https://openalex.org/W2163605009","https://openalex.org/W2194775991","https://openalex.org/W2243397390","https://openalex.org/W2404498690","https://openalex.org/W2474608001","https://openalex.org/W2535873859","https://openalex.org/W2543927648","https://openalex.org/W2612372205","https://openalex.org/W2618043096","https://openalex.org/W2620038827","https://openalex.org/W2744026832","https://openalex.org/W2752782242","https://openalex.org/W2754049786","https://openalex.org/W2765233338","https://openalex.org/W2765424254","https://openalex.org/W2768346313","https://openalex.org/W2774018344","https://openalex.org/W2787708942","https://openalex.org/W2789041624","https://openalex.org/W2897765688","https://openalex.org/W2962759300","https://openalex.org/W2962847335","https://openalex.org/W2962872506","https://openalex.org/W2962898354","https://openalex.org/W2963001136","https://openalex.org/W2963037989","https://openalex.org/W2963143631","https://openalex.org/W2963150697","https://openalex.org/W2963389226","https://openalex.org/W2963446712","https://openalex.org/W2963460857","https://openalex.org/W2963466847","https://openalex.org/W2963485691","https://openalex.org/W2963542245","https://openalex.org/W2963671154","https://openalex.org/W2963744840","https://openalex.org/W2963857521","https://openalex.org/W2964082701","https://openalex.org/W2964122153","https://openalex.org/W2968044287","https://openalex.org/W2969664989","https://openalex.org/W2969985801","https://openalex.org/W2972986629","https://openalex.org/W2981817257","https://openalex.org/W2983219069","https://openalex.org/W2983498217","https://openalex.org/W2985987886","https://openalex.org/W2986674980","https://openalex.org/W2991429372","https://openalex.org/W3015646845","https://openalex.org/W3103557498","https://openalex.org/W3110144845","https://openalex.org/W3158953723","https://openalex.org/W3176138409","https://openalex.org/W3186991201","https://openalex.org/W3198300623","https://openalex.org/W3208993340","https://openalex.org/W4214502238","https://openalex.org/W4293846201","https://openalex.org/W4297749549","https://openalex.org/W4383466480","https://openalex.org/W6637162671","https://openalex.org/W6637373629","https://openalex.org/W6640963894","https://openalex.org/W6684191040","https://openalex.org/W6719080892","https://openalex.org/W6729756640","https://openalex.org/W6732492507","https://openalex.org/W6737043114","https://openalex.org/W6737443998","https://openalex.org/W6739868092","https://openalex.org/W6745272055"],"related_works":["https://openalex.org/W2896134808","https://openalex.org/W3172436493","https://openalex.org/W4287164812","https://openalex.org/W2957492749","https://openalex.org/W1887135636","https://openalex.org/W2386063599","https://openalex.org/W1975884855","https://openalex.org/W3213150849","https://openalex.org/W4285605394","https://openalex.org/W2025894073"],"abstract_inverted_index":{"Deep":[0,48],"learning-based":[1],"face":[2,226],"recognition":[3,23,114,135,227],"models":[4,24,50],"are":[5,35,41,51],"vulnerable":[6,43],"to":[7,18,44,54,65,94,156,165,210,224],"adversarial":[8,26,46,68,85,96,99,151,167,179,189],"attacks.":[9,47],"To":[10],"curb":[11],"these":[12,33],"attacks,":[13],"most":[14],"defense":[15,86,190],"methods":[16,34,191],"aim":[17],"improve":[19],"the":[20,29,67,104,113,122,127,134,145,150,203],"robustness":[21],"of":[22,32,178],"against":[25],"perturbations.":[27,79],"However,":[28],"generalization":[30,197],"capacities":[31],"quite":[36],"limited.":[37],"In":[38,80],"practice,":[39],"they":[40,72],"still":[42],"unseen":[45,166],"learning":[49],"fairly":[52],"robust":[53],"general":[55,78],"perturbations,":[56],"such":[57],"as":[58,77],"Gaussian":[59],"noises.":[60],"A":[61],"straightforward":[62],"approach":[63,183],"is":[64,92,232],"inactivate":[66,95],"perturbations":[69,97,105,128,152,168],"so":[70],"that":[71,103,218],"can":[73,162,206,220],"be":[74,118,163,207,221],"easily":[75,222],"handled":[76],"this":[81,157],"paper,":[82],"a":[83,119,175,195],"plug-and-play":[84],"method,":[87],"named":[88],"perturbation":[89],"inactivation":[90],"(PIN),":[91],"proposed":[93,160,204],"for":[98],"defense.":[100],"We":[101],"discover":[102],"in":[106,125,138],"different":[107,110],"subspaces":[108],"have":[109,129],"influences":[111],"on":[112,133,174],"model.":[115],"There":[116],"should":[117],"subspace,":[120],"called":[121],"immune":[123,146],"space,":[124],"which":[126],"fewer":[130],"adverse":[131],"impacts":[132],"model":[136],"than":[137],"other":[139],"subspaces.":[140],"Hence,":[141],"our":[142],"method":[143,161,205],"estimates":[144],"space":[147],"and":[148],"inactivates":[149],"by":[153],"restricting":[154],"them":[155],"subspace.":[158],"The":[159,229],"generalized":[164,223],"since":[169],"it":[170,219],"does":[171],"not":[172,184],"rely":[173],"specific":[176],"kind":[177],"attack":[180],"method.":[181],"This":[182],"only":[185],"outperforms":[186],"several":[187],"state-of-the-art":[188],"but":[192],"also":[193],"demonstrates":[194],"superior":[196],"capacity":[198],"through":[199],"exhaustive":[200],"experiments.":[201],"Moreover,":[202],"successfully":[208],"applied":[209],"four":[211],"commercial":[212],"APIs":[213],"without":[214],"additional":[215],"training,":[216],"indicating":[217],"existing":[225],"systems.":[228],"source":[230],"code":[231],"available":[233],"at":[234],"https://github.com/RenMin1991/Perturbation-Inactivate..":[235]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":11},{"year":2024,"cited_by_count":5},{"year":2023,"cited_by_count":5}],"updated_date":"2026-03-27T05:58:40.876381","created_date":"2025-10-10T00:00:00"}
