DiffAM: Diffusion-based Adversarial Makeup Transfer for Facial Privacy Protection

被引:3
|
作者
Sun, Yuhao [1 ]
Yu, Lingyun [1 ]
Xie, Hongtao [1 ]
Li, Jiaming [1 ]
Zhang, Yongdong [1 ]
机构
[1] Univ Sci & Technol China, Hefei, Peoples R China
关键词
D O I
10.1109/CVPR52733.2024.02321
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
With the rapid development of face recognition (FR) systems, the privacy of face images on social media is facing severe challenges due to the abuse of unauthorized FR systems. Some studies utilize adversarial attack techniques to defend against malicious FR systems by generating adversarial examples. However, the generated adversarial examples, i.e., the protected face images, tend to suffer from subpar visual quality and low transferability. In this paper, we propose a novel face protection approach, dubbed DiffAM, which leverages the powerful generative ability of diffusion models to generate high-quality protected face images with adversarial makeup transferred from reference images. To be specific, we first introduce a makeup removal module to generate non-makeup images utilizing a fine-tuned diffusion model with guidance of textual prompts in CLIP space. As the inverse process of makeup transfer, makeup removal can make it easier to establish the deterministic relationship between makeup domain and non-makeup domain regardless of elaborate text prompts. Then, with this relationship, a CLIP-based makeup loss along with an ensemble attack strategy is introduced to jointly guide the direction of adversarial makeup domain, achieving the generation of protected face images with natural-looking makeup and high black-box transferability. Extensive experiments demonstrate that DiffAM achieves higher visual quality and attack success rates with a gain of 12.98% under black-box setting compared with the state of the arts. The code will be available at https://github.com/HansSunY/DiffAM.
引用
收藏
页码:24584 / 24594
页数:11
相关论文
共 50 条
  • [1] 3D-Aware Adversarial Makeup Generation for Facial Privacy Protection
    Lyu, Yueming
    Jiang, Yue
    He, Ziwen
    Peng, Bo
    Liu, Yunfan
    Dong, Jing
    IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2023, 45 (11) : 13438 - 13453
  • [2] Diff-Privacy: Diffusion-Based Face Privacy Protection
    He, Xiao
    Zhu, Mingrui
    Chen, Dongxin
    Wang, Nannan
    Gao, Xinbo
    IEEE TRANSACTIONS ON CIRCUITS AND SYSTEMS FOR VIDEO TECHNOLOGY, 2024, 34 (12) : 13164 - 13176
  • [3] Protecting Facial Privacy: Generating Adversarial Identity Masks via Style-robust Makeup Transfer
    Hu, Shengshan
    Liu, Xiaogeng
    Zhang, Yechao
    Li, Minghui
    Zhang, Leo Yu
    Jin, Hai
    Wu, Libing
    2022 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2022), 2022, : 14994 - 15003
  • [4] Diffusion-Based Adversarial Purification for Speaker Verification
    Bai, Yibo
    Zhang, Xiao-Lei
    Li, Xuelong
    IEEE SIGNAL PROCESSING LETTERS, 2024, 31 : 2300 - 2304
  • [5] Robust Evaluation of Diffusion-Based Adversarial Purification
    Lee, Minjong
    Kim, Dongwoo
    2023 IEEE/CVF INTERNATIONAL CONFERENCE ON COMPUTER VISION, ICCV, 2023, : 134 - 144
  • [6] Facial Image Privacy Protection Based on Principal Components of Adversarial Segmented Image Blocks
    Yang, Jingjing
    Liu, Jiaxing
    Wu, Jinzhao
    IEEE ACCESS, 2020, 8 : 103385 - 103394
  • [7] Personalized facial makeup transfer based on outline correspondence
    Gao, Mengying
    Wang, Pengjie
    COMPUTER ANIMATION AND VIRTUAL WORLDS, 2024, 35 (01)
  • [8] BeautyGAN: Instance-level Facial Makeup Transfer with Deep Generative Adversarial Network
    Li, Tingting
    Qian, Ruihe
    Dong, Chao
    Liu, Si
    Yan, Qiong
    Zhu, Wenwu
    Lin, Liang
    PROCEEDINGS OF THE 2018 ACM MULTIMEDIA CONFERENCE (MM'18), 2018, : 645 - 653
  • [9] DiffFace: Diffusion-based face swapping with facial guidance
    Kim, Kihong
    Kim, Yunho
    Cho, Seokju
    Seo, Junyoung
    Nam, Jisu
    Lee, Kychul
    Kim, Seungryong
    Lee, Kwanghee
    PATTERN RECOGNITION, 2025, 163
  • [10] Composite makeup transfer model based on generative adversarial networks
    Sun, Kelei
    Pan, Yu
    Zhou, Huaping
    MULTIMEDIA SYSTEMS, 2024, 30 (05)