MaGAT: Mask-Guided Adversarial Training for Defending Face Editing GAN Models From Proactive Defense

Shengwei Luo,Fangjun Huang
DOI: https://doi.org/10.1109/lsp.2024.3380466
2024-04-05
IEEE Signal Processing Letters
Abstract:The malicious misuse of face editing technology has endangered individual privacy and reputation. Adversarial attack-based proactive defense has been proposed to against it, which could prevent facial images from being successfully manipulated by face editing GAN models. However, the malicious manipulators could defeat proactive defense through adversarial training. Therefore, studying the effectiveness of proactive defense against adversarially trained models is critical to realize reliable proactive defense actions in real world scenario. In this letter we propose a Mask-Guided Adversarial Training (MaGAT) framework to defend face editing GAN models from proactive defense, which aims at training GAN models to still output original desired images even if the input images are adversarial examples. Extensive experiments demonstrate that the effectiveness of MaGAT still maintains on dataset unseen during training, which means it is potentially applicable for real world applications whose input images are unknown before.
engineering, electrical & electronic
What problem does this paper attempt to address?