Skip to main content

Showing 1–8 of 8 results for author: Kakizaki, K

Searching in archive cs. Search in all archives.
.
  1. arXiv:2304.05048  [pdf, other

    cs.CV cs.AI

    Simultaneous Adversarial Attacks On Multiple Face Recognition System Components

    Authors: Inderjeet Singh, Kazuya Kakizaki, Toshinori Araki

    Abstract: In this work, we investigate the potential threat of adversarial examples to the security of face recognition systems. Although previous research has explored the adversarial risk to individual components of FRSs, our study presents an initial exploration of an adversary simultaneously fooling multiple components: the face detector and feature extractor in an FRS pipeline. We propose three multi-o… ▽ More

    Submitted 11 April, 2023; originally announced April 2023.

  2. arXiv:2211.16253  [pdf, other

    cs.LG cs.CV

    Advancing Deep Metric Learning Through Multiple Batch Norms And Multi-Targeted Adversarial Examples

    Authors: Inderjeet Singh, Kazuya Kakizaki, Toshinori Araki

    Abstract: Deep Metric Learning (DML) is a prominent field in machine learning with extensive practical applications that concentrate on learning visual similarities. It is known that inputs such as Adversarial Examples (AXs), which follow a distribution different from that of clean data, result in false predictions from DML systems. This paper proposes MDProp, a framework to simultaneously improve the perfo… ▽ More

    Submitted 6 December, 2022; v1 submitted 29 November, 2022; originally announced November 2022.

  3. arXiv:2203.15498  [pdf, other

    cs.CR cs.AI cs.CV cs.LG

    Powerful Physical Adversarial Examples Against Practical Face Recognition Systems

    Authors: Inderjeet Singh, Toshinori Araki, Kazuya Kakizaki

    Abstract: It is well-known that the most existing machine learning (ML)-based safety-critical applications are vulnerable to carefully crafted input instances called adversarial examples (AXs). An adversary can conveniently attack these target systems from digital as well as physical worlds. This paper aims to the generation of robust physical AXs against face recognition systems. We present a novel smoothn… ▽ More

    Submitted 23 March, 2022; originally announced March 2022.

    Comments: Accepted at IEEE/CVF WACV 2022 MAP

  4. Universal Adversarial Spoofing Attacks against Face Recognition

    Authors: Takuma Amada, Seng Pei Liew, Kazuya Kakizaki, Toshinori Araki

    Abstract: We assess the vulnerabilities of deep face recognition systems for images that falsify/spoof multiple identities simultaneously. We demonstrate that, by manipulating the deep feature representation extracted from a face image via imperceptibly small perturbations added at the pixel level using our proposed Universal Adversarial Spoofing Examples (UAXs), one can fool a face verification system into… ▽ More

    Submitted 1 October, 2021; originally announced October 2021.

    Comments: Accepted to International Joint Conference on Biometrics (IJCB 2021)

  5. arXiv:2109.14205  [pdf, other

    cs.CV cs.AI cs.LG

    On Brightness Agnostic Adversarial Examples Against Face Recognition Systems

    Authors: Inderjeet Singh, Satoru Momiyama, Kazuya Kakizaki, Toshinori Araki

    Abstract: This paper introduces a novel adversarial example generation method against face recognition systems (FRSs). An adversarial example (AX) is an image with deliberately crafted noise to cause incorrect predictions by a target system. The AXs generated from our method remain robust under real-world brightness changes. Our method performs non-linear brightness transformations while leveraging the conc… ▽ More

    Submitted 29 September, 2021; originally announced September 2021.

    Comments: Accepted at BIOSIG 2021 conference

    Journal ref: LNI Volume: BIOSIG 2021, LNI Volume 315, ISBN 978-3-88579-709-8

  6. arXiv:1905.03421  [pdf, ps, other

    cs.LG cs.CR cs.CV stat.ML

    Adversarial Image Translation: Unrestricted Adversarial Examples in Face Recognition Systems

    Authors: Kazuya Kakizaki, Kosuke Yoshida

    Abstract: Thanks to recent advances in deep neural networks (DNNs), face recognition systems have become highly accurate in classifying a large number of face images. However, recent studies have found that DNNs could be vulnerable to adversarial examples, raising concerns about the robustness of such systems. Adversarial examples that are not restricted to small perturbations could be more serious since co… ▽ More

    Submitted 28 January, 2020; v1 submitted 8 May, 2019; originally announced May 2019.

    Comments: Kazuya Kakizaki and Kosuke Yoshida share equal contributions. Accepted at AAAI Workshop on Artificial Intelligence Safety (2020)

  7. arXiv:1811.08080  [pdf, other

    cs.LG cs.CR cs.CV stat.ML

    Lightweight Lipschitz Margin Training for Certified Defense against Adversarial Examples

    Authors: Hajime Ono, Tsubasa Takahashi, Kazuya Kakizaki

    Abstract: How can we make machine learning provably robust against adversarial examples in a scalable way? Since certified defense methods, which ensure $ε$-robust, consume huge resources, they can only achieve small degree of robustness in practice. Lipschitz margin training (LMT) is a scalable certified defense, but it can also only achieve small robustness due to over-regularization. How can we make cert… ▽ More

    Submitted 20 November, 2018; originally announced November 2018.

  8. arXiv:1507.06763  [pdf, ps, other

    stat.ML cs.CR cs.LG

    Differentially Private Analysis of Outliers

    Authors: Rina Okada, Kazuto Fukuchi, Kazuya Kakizaki, Jun Sakuma

    Abstract: This paper investigates differentially private analysis of distance-based outliers. The problem of outlier detection is to find a small number of instances that are apparently distant from the remaining instances. On the other hand, the objective of differential privacy is to conceal presence (or absence) of any particular instance. Outlier detection and privacy protection are thus intrinsically c… ▽ More

    Submitted 26 July, 2015; v1 submitted 24 July, 2015; originally announced July 2015.