Fetching the paper…
Reading the bibliography…
In this paper we propose a novel easily reproducible technique to attack the best public Face ID system ArcFace in different shooting conditions.
“Face recognition by humans: Nineteen results all computer vision researchers should know about”,
P. Sinha, B. Balas, Y. Ostrovsky, and R. Russell, · 1908
Earlier work this paper cites.
“ImageNet: A Large-Scale Hierarchical Image Database”,
J. Deng, W. Dong, R. Socher, L.-J. Li, K. Li, and L. Fei-Fei,, · 2009
Earlier work this paper cites.
“Intriguing properties of neural networks”,
C. Szegedy, W. Zaremba, I. Sutskever, J. Bruna, D. Erhan, I. Goodfellow, and R. Fergus, · 2013
Earlier work this paper cites.
“Deepface: Closing the gap to human-level performance in face verification”,
Y. Taigman, M. Yang, M. Ranzato, and L. Wolf, · 2014
Earlier work this paper cites.
“Web-Scale Training for Face Identification”,
Y. Taigman, M. Yang, M. Ranzato, and L. Wolf, · 2014
Earlier work this paper cites.
“Learning Face Representation from Scratch”,
D. Yi, Z. Lei, S. Liao, and S. Li, · 2014
Earlier work this paper cites.
“Explaining and harnessing adversarial examples”,
I. Goodfellow, J. Shlens, and C. Szegedy, · 2014
Earlier work this paper cites.
“Generative Adversarial Networks”,
I. Goodfellow, J. Pouget-Abadie, M. Mirza, B. Xu, D. Warde-Farley, S. Ozair, A. Courville, and Y. Bengio, · 2014
Earlier work this paper cites.
“FaceNet: A Unified Embedding for Face Recognition and Clustering”,
F. Schroff, D. Kalenichenko, and J. Philbin, · 2015
Earlier work this paper cites.
“MegaFace: A Million Faces for Recognition at Scale”,
D. Miller, E. Brossard, S. Seitz, and I. Kemelmacher-Shlizerman, · 2015
Earlier work this paper cites.
“The MegaFace Benchmark: 1 Million Faces for Recognition at Scale”,
I. Kemelmacher-Shlizerman, S. Seitz, D. Miller, and E. Brossard, · 2015
Earlier work this paper cites.
“The limitations of deep learning in adversarial settings”,
N. Papernot, P. McDaniel, S. Jha, M. Fredrikson, Z. Celik, and A. Swami, · 2015
Earlier work this paper cites.
“Faster R-CNN: Towards Real-Time Object Detection with Region Proposal Networks”,
Shaoqing Ren, Kaiming He, Ross Girshick, Jian Sun · 2015
Earlier work this paper cites.
“Spatial transformer networks”,
M. Jaderberg, K. Simonyan, and A. Zisserman, · 2015
Earlier work this paper cites.
“MS-Celeb-1M: A Dataset and Benchmark for Large-Scale Face Recognition”,
Y. Guo, L. Zhang, Y. Hu, X. He, and J. Gao, · 2016
Cited alongside, same era.
“Large-Margin Softmax Loss for Convolutional Neural Networks”,
W. Liu, Y. Wen, Z. Yu, and M. Yang, · 2016
Cited alongside, same era.
“Practical black-box attacks against machine learning”,
N. Papernot, P. McDaniel, I. Goodfellow, S. Jha, Z. Celik, and A. Swami, · 2016
Cited alongside, same era.
“Universal adversarial perturbations”,
S. Moosavi-Dezfooli, A. Fawzi, O. Fawzi, and P. Frossard, · 2016
Cited alongside, same era.
“Robust physical-world attacks on deep learning models”,
K. Eykholt, I. Evtimov, E. Fernandes, B. Li, A. Rahmati, C. Xiao, A. Prakash, T. Kohno, and D. Song, · 2017
Later among the works it cites.
“Adversarial Examples that Fool Detectors”,
J. Lu, H. Sibai, and E. Fabry, · 2017
Later among the works it cites.
“Note on attacking object detectors with adversarial stickers”,
K. Eykholt, I. Evtimov, E. Fernandes, B. Li, D. Song, T. Kohno, A. Rahmati, A. Prakash, and F. Tramer, · 2017
Later among the works it cites.
“Additive Margin Softmax for Face Verification”,
F. Wang, W. Liu, H. Liu, and J. Cheng, · 2018
Later among the works it cites.
“CosFace: Large Margin Cosine Loss for Deep Face Recognition”,
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
A. Kurakin, I. Goodfellow, and S. Bengio, · 2016
Cited alongside, same era.
“Accessorize to a crime: Real and stealthy attacks on state-of-the-art face recognition”,
M. Sharif, S. Bhagavatula, L. Bauer, and M. Reiter, · 2016
Cited alongside, same era.
“YOLO9000: Better, Faster, Stronger”,
J. Redmon and A. Farhadi, · 2016
Cited alongside, same era.
“SphereFace: Deep Hypersphere Embedding for Face Recognition”,
W. Liu, Y. Wen, Z. Yu, M. Li, B. Raj, and L. Song, · 2017
Cited alongside, same era.
“Towards deep learning models resistant to adversarial examples”,
A. Madry, A. Makelov, L. Schmidt, D. Tsipras, and A. Vladu, · 2017
Cited alongside, same era.
“Boosting Adversarial Attacks with Momentum”,
Y. Dong, F. Liao, T. Pang, H. Su, J. Zhu, X. Hu, and J. Li, · 2017
Cited alongside, same era.
“One pixel attack for fooling deep neural networks”,
J. Su, D. Vargas, and S. Kouichi, · 2017
Cited alongside, same era.
“Adversarial examples for semantic segmentation and object detection”,
C. Xie, J. Wang, Z. Zhang, Y. Zhou, L. Xie, and A. Yuille, · 2017
Cited alongside, same era.
H. Wang, Y. Wang, Z. Zhou, X. Ji, D. Gong, J. Zhou, Z. Li, and W. Liu, · 2018
Later among the works it cites.
“Arcface: Additive angular margin loss for deep face recognition”,
J. Deng, J. Guo, N. Xue, and S. Zafeiriou, · 2018
Later among the works it cites.
“Rogue Signs: Deceiving Traffic Sign Recognition with Malicious Ads and Logos”,
C. Sitawarin, A. Bhagoji, A. Mosenia, P. Mittal, and M. Chiang, · 2018
Later among the works it cites.
“DARTS: Deceiving Autonomous Cars with Toxic Signs”,
C. Sitawarin, A. Bhagoji, A. Mosenia, M. Chiang, and P. Mittal, · 2018
Later among the works it cites.
“Robust physical adversarial attack on faster r-cnn object detector”,
S. Chen, C. Cornelius, J. Martin, and D. Chau, · 2018
Later among the works it cites.
“Physical Adversarial Examples for Object Detectors”,
K. Eykholt, I. Evtimov, E. Fernandes, B. Li, A. Rahmati, F. Tramer, A. Prakash, T. Kohno, and D. Song, · 2018
Later among the works it cites.
“Seeing isn’t Believing: Practical Adversarial Attack Against Object Detectors”,
Y. Zhao, H. Zhu, R. Liang, Q. Shen, S. Zhang, and K. Chen, · 2018
Later among the works it cites.
“YOLOv3: An Incremental Improvement”,
J. Redmon and A. Farhadi, · 2018
Later among the works it cites.
“A General Framework for Adversarial Examples with Objectives”,
M. Sharif, S. Bhagavatula, L. Bauer, and M. Reiter, · 2018
Later among the works it cites.
“Fooling automated surveillance cameras: adversarial patches to attack person detection”,
S. Thys, W. Ranst, and T. Goedeme, · 2019
Closest in time.