all InfoSec news
Manipulating Weights in Face-Recognition AI Systems
Schneier on Security www.schneier.com
Interesting research: “Facial Misrecognition Systems: Simple Weight Manipulations Force DNNs to Err Only on Specific Persons“:
Abstract: In this paper we describe how to plant novel types of backdoors in any facial recognition model based on the popular architecture of deep Siamese neural networks, by mathematically changing a small fraction of its weights (i.e., without using any additional training or optimization). These backdoors force the system to err only on specific persons which are preselected by the attacker. …
academic papers architecture backdoors changing face recognition facial facial recognition networks neural networks novel optimization popular recognition research simple system systems training types