FB pixel

Image-modifying attacks can be foiled, making facial recognition more reliable — researchers

Image-modifying attacks can be foiled, making facial recognition more reliable — researchers
 

An AI training technique effective at thwarting adversarial attacks that could have fatal results in autonomous vehicles also makes it easier for algorithms to find the correct (and safe in this context) solution.

Duke University researchers say they have found a way to foil adversarial attacks while minimizing decreases in algorithm performance. Their results could immunize facial recognition and autonomous navigation against attacks aimed at these increasingly popular AI capabilities.

The researchers were looking for methods of improving gradient regularization in neural network defense that would minimize training computational complexity. Many existing techniques for securing facial recognition and other neural networks from adversarial attacks are considered impractical due to the computational power the require, the researchers write.

They proposed a form of complex-valued neural network capable of boosting gradient regularization used on “classification tasks of real-valued input in adversarial settings,” according to the Duke paper.

The research indicates that, given comparable storage and complexity, a gradient-regularized complex-valued neural network (CVNN) outperforms real-valued neural networks.

An article in The Register says the new method could increase the quality of computer vision algorithm results as much as 20 percent by adding two layers of complex values comprised of real and imaginary number components.

This improvement makes the performance of the networks trained with complex values and gradient regularization similar to that of networks trained on adversarial attacks, but without prior knowledge of those attacks.

Work on adversarial attacks for defeating facial recognition systems continues to be conducted, meanwhile.

Article Topics

 |   |   |   |   |   |   |   | 

Latest Biometrics News

 

Vietnam’s Hanoi targets near‑universal e-IDs under new digital transformation plan

Vietnam’s capital city has approved an ambitious digital transformation plan involving AI. Hanoi will require all municipal agencies to use…

 

Plaid, Idemia, Entrust and Ping Identity make senior hires

A cropful of senior leadership appointments across the identity and payments sector underline the shifts of AI‑driven fraud, real‑time payments…

 

Cybastion to support digital infrastructure development in DRC

U.S. digital ID and cybersecurity firm Cybastion will deploy its technology and expertise in support of the Democratic Republic of…

 

Tanzania seeks biometrics contractors for Phase II of national digital ID project

Tanzania says it is seeking contractors for some activities related to the execution of Phase II of the country’s national…

 

Smart glasses and the new DHS surveillance budget

The Department of Homeland Security’s (DHS) Fiscal Year (FY) 2027 budget justification lays out an expansive biometric and identity tech…

 

Voice AI expands attack surface for speaker biometrics as APIs proliferate

Deepfake voices are already a challenge for authentication systems. But the task is getting tougher, as big players pursue voice…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Biometric Market Analysis and Buyer's Guides

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events