论文标题

Fantômas:了解面部匿名化可逆性

Fantômas: Understanding Face Anonymization Reversibility

论文作者

Todt, Julian, Hanisch, Simon, Strufe, Thorsten

论文摘要

面部图像是丰富的信息来源,可用于识别个人并推断有关他们的私人信息。为了减轻这种隐私风险,匿名化对清晰的图像进行了转换来混淆敏感信息,同时保留了一些效用。尽管有令人印象深刻的主张,但有时不会通过令人信服的方法来评估它们。 逆转匿名图像以类似于它们的真实输入(甚至可以通过面部识别方法识别)代表了有缺陷的匿名化指标。最近的一些结果确实表明,对于某些方法是可能的。但是,它的理解不太了解,哪种方法是可逆的,以及原因。在本文中,我们对面部匿名化可逆性现象进行了详尽的研究。除其他外,我们发现15个经过测试的面部匿名化中有11个至少部分可逆,并突出了重建和反转如何是使逆转可能成为可能的基本过程。

Face images are a rich source of information that can be used to identify individuals and infer private information about them. To mitigate this privacy risk, anonymizations employ transformations on clear images to obfuscate sensitive information, all while retaining some utility. Albeit published with impressive claims, they sometimes are not evaluated with convincing methodology. Reversing anonymized images to resemble their real input -- and even be identified by face recognition approaches -- represents the strongest indicator for flawed anonymization. Some recent results indeed indicate that this is possible for some approaches. It is, however, not well understood, which approaches are reversible, and why. In this paper, we provide an exhaustive investigation in the phenomenon of face anonymization reversibility. Among other things, we find that 11 out of 15 tested face anonymizations are at least partially reversible and highlight how both reconstruction and inversion are the underlying processes that make reversal possible.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源