FB pixel

Google researchers create universal adversarial image patches to defeat AI object recognition

Categories Biometric R&D  |  Biometrics News
 

A team of Google researchers has developed a way to defeat AI-based image recognition systems with adversarial images that can be printed at home, and do not need to be tuned to the image they are attempting to mask, The Verge reports.

In a paper (PDF) describing their method for creating “universal, robust, targeted adversarial image patches in the real world,” the researchers say that prior work in the area has largely focussed on small or imperceptible changes to the input.

The team of researchers, led by Tom B. Brown and Dandelion Mané, differed in their approach by developing an image which basically hijacks the AI system’s attention.

“We believe that this attack exploits the way image classification tasks are constructed,” the researchers write in the report. “While images may contain several items, only one target label is considered true, and thus the network must learn to detect the most “salient” item in the frame. The adversarial patch exploits this feature by producing inputs much more salient than objects in the real world.”

The Verge points out that this technology could create security risks for a number of applications, such as self-driving cars. Creating such an adversarial attack, however, requires significant effort and expertise, and possibly access to the code of the targeted AI object-recognition system.

In 2016, researchers at Carnegie Mellon University developed eyeglass frames capable of defeating commercial-grade facial recognition software.

Article Topics

 |   |   |   |   | 

Latest Biometrics News

 

Governments still struggling to secure data. Zero-trust, passkeys could help

A digital data breach at the National Social Security Fund (CNPS) of Cameroon has resulted in the leak of citizens’…

 

Controversy surrounding police use of FRT in Denmark and Germany continues

In recent months, European nations have seen heightened debate over the use of facial recognition technology (FRT) by law enforcement,…

 

G20 ministers pledge AI transparency and digital inclusion with DPI at the core

At the G20 Digital Economy Ministers’ meeting held in Maceió, Brazil, on September 13, 2024, global leaders reaffirmed their commitment…

 

Spanish startup B-FY brings offline biometrics to US cloud authentication market

Spain-based biometrics startup B-FY has launched in the U.S. market, introducing its cloud-based identity verification and authentication software. B-FY’s technology…

 

Biometric payment cards from FPC and Infineon ready for mass production

Fingerprint Cards and Infineon Technologies have officially unveiled the complete package of biometric payment card technologies that Infineon previewed in…

 

UNHCR, WFP data sharing collaboration yielding results for refugee management in Tanzania

Food distribution for refugees in Tanzania is getting easier with the use of a data sharing tool recently introduced by…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Most Read This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events