PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
September 10, 2025ITM Web of Conferences0 citationsOpen Access

Research on Attack and Defence of Face Recognition Based on Adversarial Learning

View Full Paper
CZChunhao Zhang

Key Points

  • Adversarial learning reveals significant vulnerabilities in face recognition models, reducing accuracy to 39%.
  • The FGSM attack method effectively diminishes model performance, demonstrating its aggressive nature against face recognition.
  • The PGD method shows potential as a defence strategy, improving sample prediction rates of attacked models to 26%.
  • Current defence mechanisms face limitations against complex attacks, indicating a need for innovative solutions.

Abstract

The rapid advancement of face recognition technology brings inevitable threats from various attacks, significantly reducing model accuracy and posing serious security risks. Enhancing defence mechanisms through algorithms is crucial to mitigate these impacts. However, these methods have limitations. New or complex attacks quickly diminish their effectiveness as attackers upgrade their techniques. Some defence techniques, while boosting model resilience, can adversely affect performance. This paper focuses on adversarial learning for attack and defence in face recognition, demonstrating the vulnerability of general models to attacks and giving a defence method that has some effect, while highlighting the limitations of current defences against complex attacks. Implementing adversarial learning reveals stark vulnerabilities: the constant tuning of parameters in the FGSM attack method reduces the model accuracy to 39.00%, illustrating its aggressiveness. In contrast, the adoption of PGD increases the sample prediction rate of the attacked prediction errors to 26.00%, demonstrating a viable defence strategy to bolster model robustness against such threats.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Chunhao Zhang (2025) studied this question.

synapsesocial.com/papers/68c198cd9b7b07f3a061aaedhttps://doi.org/10.1051/itmconf/20257802002
Ask AI
Helpful
Bookmark
Share
View Full Paper