The Tools to Defeat Facial Recognition Are Free Online
- Total Posts: 11,670
The Huawei paper shows how two stickers, each with a specific pattern that looks like a deformed QR code, can fool a face detection algorithm with 95% accuracy once they are placed on a subject’s cheeks. If you’re savvy, you can fork the code and play with yourself on GitHub. The attack on the face detector turns the algorithm against itself – it only works because the researchers had access to the program they were trying to fool. But that doesn’t mean it’s useless. Many commonly used facial recognition tools are built on open source software that is available to all. Develop the sticker hack, the team first took photos of themselves with checked patches on their cheeks. Then they built an algorithm to alter the checkered cheek patterns in the images, and test whether that changed the confidence of the algorithm that there was a face in the image.
The algorithm was set to tinker with the checkered boxes hundreds of times, checking its confidence again and again, until further changes did not lower the probability of detecting a face.When the altered checkered patches were printed and applied to a face in real life , they still evaded the face detector. Researchers noted that the patterns generated by the algorithm were specific to the person in the original image – meaning each evasion has been tailored to its user. This research is certainly not a death blow to facial recognition – there are only two examples of it working, and the paper explicitly notes that a vulnerability like this could be patched out, meaning Huawei is likely to study it in order to secure its own AIIt’s also not the first attack of its kind.
Research from 2016 used a similar technique to create glasses that would obscure parts of a subject’s face and fool a machine. Still, this work illustrates that after years of research on adversarial examples, the people creating AI and the people trying to trick it remain locked in a cat and mouse game that seems unlikely to end any time soon. “There is no existing solution to mitigate this issue according to recent publications,” the researchers write.And for those worried about the nearing dystopian future of always-on surveillance , knowing there’s a way around the machines tracking our whereabouts is a small comfort that the panopticon is not infallible – even if it means wearing QR codes on our faces.
OneZero The front lines of the future. A Medium publication on tech and science.Follow1.7K PrivacyFacial RecognitionAITechIndustry1.7K clapsWritten byDave GershgornFollowWriting on AI at OneZero. Previously Qz, PopSci, and NYTimes.FollowOneZeroFollowThe front lines of the future. A Medium publication about tech and science.FollowSee responses (13)
Jesus: Hey, Dad? God: Yes, Son? Jesus: Western civilization followed me home. Can I keep it? God: Certainly not! And put it down this minute--you don't know where it's been! Tom Robbins in Another Roadside Attraction
January 24, 2022 at 1:23 PM #467504NV WinoModerator
- Total Posts: 9,235
But add a code-like pattern to the mask and the detection rate goes way down. I wonder if any kind of pattern would do that?
January 24, 2022 at 2:53 PM #467520djean111Participant
- Total Posts: 7,996
which evidently foiled the CCT cameras.
America is not a country, it's just a business. (Brad Pitt, Killing Them Softly)
Everything I post is just my opinion, and, honestly, I would love to be wrong.
A YouTube comment – we need new conspiracy theories – the old ones have all come true.
- You must be logged in to reply to this topic.