Printing and Scanning Attack for Image Counter Forensics
- URL: http://arxiv.org/abs/2005.02160v2
- Date: Wed, 24 Jun 2020 17:01:59 GMT
- Title: Printing and Scanning Attack for Image Counter Forensics
- Authors: Hailey James, Otkrist Gupta, Dan Raviv
- Abstract summary: Examining the authenticity of images has become increasingly important as manipulation tools become more accessible and advanced.
Recent work has shown that while CNN-based image manipulation detectors can successfully identify manipulations, they are also vulnerable to adversarial attacks.
We explore another method of highly plausible attack: printing and scanning.
- Score: 11.193867567895353
- License: http://arxiv.org/licenses/nonexclusive-distrib/1.0/
- Abstract: Examining the authenticity of images has become increasingly important as
manipulation tools become more accessible and advanced. Recent work has shown
that while CNN-based image manipulation detectors can successfully identify
manipulations, they are also vulnerable to adversarial attacks, ranging from
simple double JPEG compression to advanced pixel-based perturbation. In this
paper we explore another method of highly plausible attack: printing and
scanning. We demonstrate the vulnerability of two state-of-the-art models to
this type of attack. We also propose a new machine learning model that performs
comparably to these state-of-the-art models when trained and validated on
printed and scanned images. Of the three models, our proposed model outperforms
the others when trained and validated on images from a single printer. To
facilitate this exploration, we create a dataset of over 6,000 printed and
scanned image blocks. Further analysis suggests that variation between images
produced from different printers is significant, large enough that good
validation accuracy on images from one printer does not imply similar
validation accuracy on identical images from a different printer.
Related papers
- Generating Automatically Print/Scan Textures for Morphing Attack Detection Applications [7.287930923353593]
One of the main scenarios is printing morphed images and submitting the respective print in a passport application process.
Small datasets are available to train the MAD algorithm because of privacy concerns.
This paper proposes two different methods based on transfer-transfer for automatically creating digital print/scan face images.
arXiv Detail & Related papers (2024-08-18T17:53:26Z) - Transferable Learned Image Compression-Resistant Adversarial Perturbations [66.46470251521947]
Adversarial attacks can readily disrupt the image classification system, revealing the vulnerability of DNN-based recognition tasks.
We introduce a new pipeline that targets image classification models that utilize learned image compressors as pre-processing modules.
arXiv Detail & Related papers (2024-01-06T03:03:28Z) - Training Data Improvement for Image Forgery Detection using Comprint [15.650121802816878]
Comprint enables forgery detection by utilizing JPEG-compression fingerprints.
This paper evaluates the impact of the training set on Comprint's performance.
arXiv Detail & Related papers (2022-11-25T12:57:51Z) - Comprint: Image Forgery Detection and Localization using Compression
Fingerprints [19.54952278001317]
Comprint is a novel forgery detection and localization method based on the compression fingerprint or comprint.
We propose a fusion of Comprint with the state-of-the-art Noiseprint, which utilizes a complementary camera model fingerprint.
Comprint and the fusion Comprint+Noiseprint represent a promising forensics tool to analyze in-the-wild tampered images.
arXiv Detail & Related papers (2022-10-05T13:05:18Z) - DocScanner: Robust Document Image Rectification with Progressive
Learning [162.03694280524084]
This work presents DocScanner, a new deep network architecture for document image rectification.
DocScanner maintains a single estimate of the rectified image, which is progressively corrected with a recurrent architecture.
The iterative refinements make DocScanner converge to a robust and superior performance, and the lightweight recurrent architecture ensures the running efficiency.
arXiv Detail & Related papers (2021-10-28T09:15:02Z) - VIPPrint: A Large Scale Dataset of Printed and Scanned Images for
Synthetic Face Images Detection and Source Linking [26.02960434287235]
We present a new dataset composed of a large number of synthetic and natural printed face images.
We verify that state-of-the-art methods to distinguish natural and synthetic face images fail when applied to print and scanned images.
arXiv Detail & Related papers (2021-02-01T13:00:29Z) - Adversarial Attacks on Binary Image Recognition Systems [78.78811131936622]
We study adversarial attacks on models for binary (i.e. black and white) image classification.
In contrast to colored and grayscale images, the search space of attacks on binary images is extremely restricted.
We introduce a new attack algorithm called SCAR, designed to fool classifiers of binary images.
arXiv Detail & Related papers (2020-10-22T14:57:42Z) - Artificial Fingerprinting for Generative Models: Rooting Deepfake
Attribution in Training Data [64.65952078807086]
Photorealistic image generation has reached a new level of quality due to the breakthroughs of generative adversarial networks (GANs)
Yet, the dark side of such deepfakes, the malicious use of generated media, raises concerns about visual misinformation.
We seek a proactive and sustainable solution on deepfake detection by introducing artificial fingerprints into the models.
arXiv Detail & Related papers (2020-07-16T16:49:55Z) - Model Watermarking for Image Processing Networks [120.918532981871]
How to protect the intellectual property of deep models is a very important but seriously under-researched problem.
We propose the first model watermarking framework for protecting image processing models.
arXiv Detail & Related papers (2020-02-25T18:36:18Z) - Discernible Image Compression [124.08063151879173]
This paper aims to produce compressed images by pursuing both appearance and perceptual consistency.
Based on the encoder-decoder framework, we propose using a pre-trained CNN to extract features of the original and compressed images.
Experiments on benchmarks demonstrate that images compressed by using the proposed method can also be well recognized by subsequent visual recognition and detection models.
arXiv Detail & Related papers (2020-02-17T07:35:08Z) - Print Defect Mapping with Semantic Segmentation [4.189639503810488]
We propose the first end-to-end framework to map print defects at pixel level.
Our framework uses Convolutional Neural Networks, specifically DeepLab-v3+, and achieves promising results.
arXiv Detail & Related papers (2020-01-27T22:40:09Z)
This list is automatically generated from the titles and abstracts of the papers in this site.
This site does not guarantee the quality of this site (including all information) and is not responsible for any consequences.