Poisoning Attacks to Compromise Face Templates

被引:0
|
作者
Biggio, Batista [1 ]
Didaci, Luca [1 ]
Fumera, Giorgio [1 ]
Roli, Fabio [1 ]
机构
[1] Univ Cagliari, Dept Elect & Elect Engn, I-09123 Cagliari, Italy
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Adaptive biometric systems update clients' templates during operation to account for natural changes over time (e. g., aging of biometric templates). Recently, it has been shown that this update can be exploited by an attacker to compromise the clients' templates: by presenting a proper sequence of fake biometric traits to the sensor, the attacker may eventually impersonate the targeted clients without any fake trait, and even force the system to deny access to them. This attack has however been shown only for PCA-based face verification, with one template per client, under worstcase assumptions about the attacker's knowledge of the system. In this paper, we show that it can be successful even in the case of multiple templates per client, for different matchers, and under more realistic scenarios, and validate it by experiments to highlight its practical relevance.
引用
收藏
页数:7
相关论文
共 50 条
  • [31] Data Poisoning Attacks in Contextual Bandits
    Ma, Yuzhe
    Jun, Kwang-Sung
    Li, Lihong
    Zhu, Xiaojin
    DECISION AND GAME THEORY FOR SECURITY, GAMESEC 2018, 2018, 11199 : 186 - 204
  • [32] Poisoning Attacks in Federated Learning: A Survey
    Xia, Geming
    Chen, Jian
    Yu, Chaodong
    Ma, Jun
    IEEE ACCESS, 2023, 11 : 10708 - 10722
  • [33] Certified Defenses for Data Poisoning Attacks
    Steinhardt, Jacob
    Koh, Pang Wei
    Liang, Percy
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 30 (NIPS 2017), 2017, 30
  • [34] Data Poisoning Attacks on Crowdsourcing Learning
    Chen, Pengpeng
    Sun, Hailong
    Chen, Zhijun
    WEB AND BIG DATA, APWEB-WAIM 2021, PT I, 2021, 12858 : 164 - 179
  • [35] Data Poisoning Attacks in Gossip Learning
    Pham, Alexandre
    Potop-Butucaru, Maria
    Tixeuil, Sebastien
    Fdida, Serge
    ADVANCED INFORMATION NETWORKING AND APPLICATIONS, VOL 2, AINA 2024, 2024, 200 : 213 - 224
  • [36] CHANGING FACE OF CHILDHOOD POISONING
    NEUMANN, CG
    KLEIN, SW
    PAZDRAL, W
    CLINICAL RESEARCH, 1976, 24 (02): : A165 - A165
  • [37] Towards Poisoning of Federated Support Vector Machines with Data Poisoning Attacks
    Mouri, Israt Jahan
    Ridowan, Muhammad
    Adnan, Muhammad Abdullah
    PROCEEDINGS OF THE 13TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND SERVICES SCIENCE, CLOSER 2023, 2023, : 24 - 33
  • [38] Morphing-Attacks Against Binary Fingervein Templates
    Mitterreiter, Tobias
    Haemmerle-Uhl, Jutta
    Uhl, Andreas
    IMAGE ANALYSIS AND PROCESSING - ICIAP 2023 WORKSHOPS, PT I, 2024, 14365 : 305 - 317
  • [39] Correction to: Optimal face templates: the next step in surveillance face recognition
    Tobias Malach
    Jitka Pomenkova
    Pattern Analysis and Applications, 2020, 23 : 1033 - 1033
  • [40] Attacks via record multiplicity on cancelable biometrics templates
    Li, Cai
    Hu, Jiankun
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2014, 26 (08): : 1593 - 1605