Publication details for Dr Ioannis IvrissimtzisAbduh, Latifah & Ivrissimtzis, Ioannis (2019), Colour Processing in Adversarial Attacks on Face Liveness Systems, in Tam, G.K.L. & Roberts, J.C. eds, Computer Graphics and Visual Computing (CGVC). Bangor, UK, The Eurographics Association.
- Publication type: Conference Paper
- Further publication details on publisher web site
- Durham Research Online (DRO) - may include full text
Author(s) from Durham
In the context of face recognition systems, liveness test is a binary classification task aiming at distinguishing between input
images that come from real people’s faces and input images that come from photos or videos of those faces, and presented to
the system’s camera by an attacker. In this paper, we train the state-of-the-art, general purpose deep neural network ResNet for
liveness testing, and measure the effect on its performance of adversarial attacks based on the manipulation of the saturation
component of the imposter images. Our findings suggest that higher saturation values in the imposter images lead to a decrease
in the network’s performance. Next, we study the relationship between the proposed adversarial attacks and corresponding
direct presentation attacks. Initial results on a small dataset of processed images which are then printed on paper or displayed
on an LCD or a mobile phone screen, show that higher saturation values lead to higher values in the network’s loss function,
indicating that these colour manipulation techniques can indeed be converted into enhanced presentation attacks.