arrow
Return

A destructive active defense algorithm for deepfake face images

delete2024-10-04
delete0
delete
OA
AI
Y
Yang Yang
N
Norisma Idris
C
Chang Liu
H
Hui Wu
D
Dingguo Yu *
DOI:10.7717/peerj-cs.2356delete
deleteOriginal
deleteShare
deleteSave
View PDF
Abstract

Abstract

En 中文
The harm caused by deepfake face images is increasing. To proactively defend against this threat, this paper innovatively proposes a destructive active defense algorithm for deepfake face images (DADFI). This algorithm adds slight perturbations to the original face images to generate adversarial samples. These perturbations are imperceptible to the human eye but cause significant distortions in the outputs of mainstream deepfake models. Firstly, the algorithm generates adversarial samples that maintain high visual fidelity and authenticity. Secondly, in a black-box scenario, the adversarial samples are used to attack deepfake models to enhance their offensive capabilities. Finally, destructive attack experiments were conducted on the mainstream face datasets CASIAFaceV5 and CelebA. The results demonstrate that the proposed DADFI algorithm not only improves the generation speed of adversarial samples but also increases the success rate of active defense. This achievement can effectively reduce the harm caused by deepfake face images.
Keywords:
Deep fake
Face images
Active defense
Adversarial samples
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

PeerJ Computer Science cover
PeerJ Computer Science
IF:
2.5
Papers:
3.4K
Citations:
6.9K

Organization

Communication University of Zhejiang cover
Communication University of Zhejiang
Scholars:
241
Papers: 252
Citations: 131
U
Universiti Malaya
Scholars:
2.1W
Papers: 1.8W
Citations: 182