{"id":"https://openalex.org/W4386299120","doi":"https://doi.org/10.1109/tifs.2023.3310352","title":"Transferable Black-Box Attack Against Face Recognition With Spatial Mutable Adversarial Patch","display_name":"Transferable Black-Box Attack Against Face Recognition With Spatial Mutable Adversarial Patch","publication_year":2023,"publication_date":"2023-01-01","ids":{"openalex":"https://openalex.org/W4386299120","doi":"https://doi.org/10.1109/tifs.2023.3310352"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2023.3310352","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2023.3310352","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5078799781","display_name":"Haotian Ma","orcid":"https://orcid.org/0000-0003-0561-0425"},"institutions":[{"id":"https://openalex.org/I183067930","display_name":"Shanghai Jiao Tong University","ror":"https://ror.org/0220qvk04","country_code":"CN","type":"education","lineage":["https://openalex.org/I183067930"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Haotian Ma","raw_affiliation_strings":["School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, China","School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, P.R.China"],"raw_orcid":"https://orcid.org/0000-0003-0561-0425","affiliations":[{"raw_affiliation_string":"School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, China","institution_ids":["https://openalex.org/I183067930"]},{"raw_affiliation_string":"School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, P.R.China","institution_ids":["https://openalex.org/I183067930"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100755854","display_name":"Ke Xu","orcid":"https://orcid.org/0000-0001-8771-9402"},"institutions":[{"id":"https://openalex.org/I183067930","display_name":"Shanghai Jiao Tong University","ror":"https://ror.org/0220qvk04","country_code":"CN","type":"education","lineage":["https://openalex.org/I183067930"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Ke Xu","raw_affiliation_strings":["School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, China","School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, P.R.China"],"raw_orcid":"https://orcid.org/0000-0001-8771-9402","affiliations":[{"raw_affiliation_string":"School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, China","institution_ids":["https://openalex.org/I183067930"]},{"raw_affiliation_string":"School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, P.R.China","institution_ids":["https://openalex.org/I183067930"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5046412453","display_name":"Xinghao Jiang","orcid":"https://orcid.org/0000-0002-9758-0579"},"institutions":[{"id":"https://openalex.org/I183067930","display_name":"Shanghai Jiao Tong University","ror":"https://ror.org/0220qvk04","country_code":"CN","type":"education","lineage":["https://openalex.org/I183067930"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xinghao Jiang","raw_affiliation_strings":["National Engineering Laboratory for Information Content Analysis Technology, School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, China","School of Electronic Information and Electrical Engineering, National Engineering Laboratory for Information Content Analysis Technology, Shanghai Jiao Tong University, Shanghai, P.R.China"],"raw_orcid":"https://orcid.org/0000-0002-9758-0579","affiliations":[{"raw_affiliation_string":"National Engineering Laboratory for Information Content Analysis Technology, School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, China","institution_ids":["https://openalex.org/I183067930"]},{"raw_affiliation_string":"School of Electronic Information and Electrical Engineering, National Engineering Laboratory for Information Content Analysis Technology, Shanghai Jiao Tong University, Shanghai, P.R.China","institution_ids":["https://openalex.org/I183067930"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100706796","display_name":"Zeyu Zhao","orcid":"https://orcid.org/0000-0002-3008-0457"},"institutions":[{"id":"https://openalex.org/I183067930","display_name":"Shanghai Jiao Tong University","ror":"https://ror.org/0220qvk04","country_code":"CN","type":"education","lineage":["https://openalex.org/I183067930"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zeyu Zhao","raw_affiliation_strings":["School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, China","School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, P.R.China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, China","institution_ids":["https://openalex.org/I183067930"]},{"raw_affiliation_string":"School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, P.R.China","institution_ids":["https://openalex.org/I183067930"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5057999830","display_name":"Tanfeng Sun","orcid":"https://orcid.org/0000-0002-3253-5136"},"institutions":[{"id":"https://openalex.org/I183067930","display_name":"Shanghai Jiao Tong University","ror":"https://ror.org/0220qvk04","country_code":"CN","type":"education","lineage":["https://openalex.org/I183067930"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Tanfeng Sun","raw_affiliation_strings":["National Engineering Laboratory for Information Content Analysis Technology, School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, China","School of Electronic Information and Electrical Engineering, National Engineering Laboratory for Information Content Analysis Technology, Shanghai Jiao Tong University, Shanghai, P.R.China"],"raw_orcid":"https://orcid.org/0000-0002-3253-5136","affiliations":[{"raw_affiliation_string":"National Engineering Laboratory for Information Content Analysis Technology, School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, China","institution_ids":["https://openalex.org/I183067930"]},{"raw_affiliation_string":"School of Electronic Information and Electrical Engineering, National Engineering Laboratory for Information Content Analysis Technology, Shanghai Jiao Tong University, Shanghai, P.R.China","institution_ids":["https://openalex.org/I183067930"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":4.079,"has_fulltext":false,"cited_by_count":25,"citation_normalized_percentile":{"value":0.95098366,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":98,"max":100},"biblio":{"volume":"18","issue":null,"first_page":"5636","last_page":"5650"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.942300021648407,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11448","display_name":"Face recognition and analysis","score":0.9373000264167786,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8312035202980042},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5798969864845276},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.5661134123802185},{"id":"https://openalex.org/keywords/facial-recognition-system","display_name":"Facial recognition system","score":0.5010273456573486},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.44725799560546875},{"id":"https://openalex.org/keywords/computer-vision","display_name":"Computer vision","score":0.3716393709182739}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8312035202980042},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5798969864845276},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.5661134123802185},{"id":"https://openalex.org/C31510193","wikidata":"https://www.wikidata.org/wiki/Q1192553","display_name":"Facial recognition system","level":3,"score":0.5010273456573486},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.44725799560546875},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.3716393709182739}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tifs.2023.3310352","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2023.3310352","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/1","score":0.5299999713897705,"display_name":"No poverty"}],"awards":[{"id":"https://openalex.org/G6192999141","display_name":null,"funder_award_id":"62002220","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6583730519","display_name":null,"funder_award_id":"62272299","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G8294877182","display_name":null,"funder_award_id":"62272297","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":53,"referenced_works":["https://openalex.org/W2096733369","https://openalex.org/W2133665775","https://openalex.org/W2194775991","https://openalex.org/W2295107390","https://openalex.org/W2325939864","https://openalex.org/W2535873859","https://openalex.org/W2746600820","https://openalex.org/W2905423756","https://openalex.org/W2962785568","https://openalex.org/W2962858109","https://openalex.org/W2962898354","https://openalex.org/W2963037989","https://openalex.org/W2963542245","https://openalex.org/W2963857521","https://openalex.org/W2969664989","https://openalex.org/W2969985801","https://openalex.org/W2972986629","https://openalex.org/W2994027480","https://openalex.org/W3015646845","https://openalex.org/W3083269515","https://openalex.org/W3094984771","https://openalex.org/W3106412272","https://openalex.org/W3110012676","https://openalex.org/W3110144845","https://openalex.org/W3119652083","https://openalex.org/W3128390792","https://openalex.org/W3179647175","https://openalex.org/W3189402954","https://openalex.org/W3200115061","https://openalex.org/W3215404543","https://openalex.org/W4205456092","https://openalex.org/W4214870408","https://openalex.org/W4221139075","https://openalex.org/W4226344269","https://openalex.org/W4293846201","https://openalex.org/W4312610155","https://openalex.org/W4312918928","https://openalex.org/W4385245566","https://openalex.org/W6618372016","https://openalex.org/W6637162671","https://openalex.org/W6637373629","https://openalex.org/W6640425456","https://openalex.org/W6679436768","https://openalex.org/W6745560452","https://openalex.org/W6746608116","https://openalex.org/W6747706139","https://openalex.org/W6751593755","https://openalex.org/W6751839145","https://openalex.org/W6765779288","https://openalex.org/W6766301176","https://openalex.org/W6767506513","https://openalex.org/W6803748346","https://openalex.org/W6809904121"],"related_works":["https://openalex.org/W2772917594","https://openalex.org/W2036807459","https://openalex.org/W2058170566","https://openalex.org/W2755342338","https://openalex.org/W2166024367","https://openalex.org/W3116076068","https://openalex.org/W2229312674","https://openalex.org/W2951359407","https://openalex.org/W2079911747","https://openalex.org/W1969923398"],"abstract_inverted_index":{"Deep":[0],"Neural":[1],"Networks":[2],"(DNNs)":[3],"are":[4,79,136],"vulnerable":[5],"to":[6,55,61,98,157],"adversarial":[7,30,43,159],"patch":[8,60,78,84,102,132,156],"attacks,":[9],"which":[10,40,149],"raises":[11],"security":[12],"concerns":[13],"for":[14],"face":[15,166,203,215],"recognition":[16,167,204,216],"systems":[17,217],"using":[18],"DNNs.":[19],"Previous":[20],"attack":[21,199],"methods":[22],"focus":[23],"on":[24,109,139,213],"the":[25,65,68,71,77,83,100,105,110,114,121,125,129,131,140,151,154,158,163,176,188,195],"perturbation":[26],"texture":[27],"and":[28,74,82,124,134,143,179,206],"generate":[29,56],"patches":[31],"with":[32,104,187],"fixed":[33],"shapes":[34],"at":[35],"random":[36],"or":[37],"pre-designed":[38],"locations,":[39],"causes":[41],"poor":[42],"transferability.":[44],"This":[45],"paper":[46],"proposes":[47],"a":[48,57,91,181],"Spatial":[49],"Mutable":[50],"Adversarial":[51],"Patch":[52,92],"(SMAP)":[53],"method":[54],"dynamic":[58,126],"mutable":[59],"be":[62],"injected":[63,155],"into":[64],"face.":[66],"In":[67],"proposed":[69,196],"SMAP,":[70],"texture,":[72],"position":[73,103,133],"shape":[75,135],"of":[76,128,153,165],"optimized":[80],"simultaneously":[81],"generation":[85],"pipeline":[86],"is":[87,96],"end-to-end":[88],"differentiable.":[89],"Specifically,":[90],"Location":[93],"Selection":[94],"Scheme":[95],"designed":[97],"find":[99],"critical":[101],"most":[106],"significant":[107],"influence":[108],"target":[111],"identity":[112],"by":[113],"step-based":[115],"gradient":[116],"search.":[117],"By":[118],"innovatively":[119],"bridging":[120],"pre-defined":[122],"mask":[123],"update":[127],"patch,":[130],"changed":[137],"based":[138],"affine":[141],"transformation":[142],"sampling":[144],"mechanism":[145],"in":[146],"each":[147],"iteration,":[148],"maintains":[150],"importance":[152],"objective.":[160],"To":[161],"evaluate":[162],"vulnerability":[164],"models,":[168],"we":[169],"explore":[170],"more":[171],"threatening":[172],"impersonation":[173],"attacks":[174],"under":[175],"black-box":[177],"setting":[178],"design":[180],"strict":[182],"evaluation":[183],"metric":[184],"that":[185,194],"aligns":[186],"real-world":[189],"scenario.":[190],"Extensive":[191],"experiments":[192],"show":[193],"SMAP":[197,209],"improves":[198],"performance":[200],"across":[201],"various":[202],"models":[205],"datasets.":[207],"Moreover,":[208],"achieves":[210],"better":[211],"transferability":[212],"commercial":[214],"than":[218],"existing":[219],"methods.":[220]},"counts_by_year":[{"year":2026,"cited_by_count":3},{"year":2025,"cited_by_count":16},{"year":2024,"cited_by_count":6}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
