BIOSIG 2021 - Proceedings of the 20th International Conference of the Biometrics Special Interest Group Kakizaki, Kazuya; Miyagawa, Taiki; Singh, Inderjeet; Sakuma, Jun
DNN-based face verification systems are vulnerable to adversarial examples. The previous paper's evaluation protocol (scenario), which we called the probe-dependent attack scenario, was unrealistic. We define a more practical attack scenario, the probe-agnostic attack. We empirically show that these attacks are more ...