
Researchers in U of T Engineering have designed a ‘privacy filter’ that disrupts facial recognition algorithms. The system relies on two AI-created algorithms: one performing continuous face detection, and another designed to disrupt the first.
Credit: Avishek Bose
Each time you upload a photo or video to a social media platform, its facial recognition systems learn a little more about you. These algorithms ingest data about who you are, your location and people you know — and they’re constantly improving.
As concerns over privacy and data security on social networks grow, U of T Engineering researchers led by Professor Parham Aarabi (ECE) and graduate student Avishek Bose (ECE MASc candidate) have created an algorithm to dynamically disrupt facial recognition systems.
“Personal privacy is a real issue as facial recognition becomes better and better,” says Aarabi. “This is one way in which beneficial anti-facial-recognition systems can combat that ability.”
Their solution leverages a deep learning technique called adversarial training, which pits two artificial intelligence algorithms against each other. Aarabi and Bose designed a set of two neural networks: the first working to identify faces, and the second working to disrupt the facial recognition task of the first. The two are constantly battling and learning from each other, setting up an ongoing AI arms race.
The result is an Instagram-like filter that can be applied to photos to protect privacy. Their algorithm alters very specific pixels in the image, making changes that are almost imperceptible to the human eye.
“The disruptive AI can ‘attack’ what the neural net for the face detection is looking for,” says Bose. “If the detection AI is looking for the corner of the eyes, for example, it adjusts the corner of the eyes so they’re less noticeable. It creates very subtle disturbances in the photo, but to the detector they’re significant enough to fool the system.”
Aarabi and Bose tested their system on the 300-W face dataset, an industry standard pool of more than 600 faces that includes a wide range of ethnicities, lighting conditions and environments. They showed that their system could reduce the proportion of faces that were originally detectable from nearly 100 per cent down to 0.5 per cent.
“The key here was to train the two neural networks against each other — with one creating an increasingly robust facial detection system, and the other creating an ever stronger tool to disable facial detection,” says Bose, the lead author on the project. The team’s study will be published and presented at the 2018 IEEE International Workshop on Multimedia Signal Processing later this summer.
In addition to disabling facial recognition, the new technology also disrupts image-based search, feature identification, emotion and ethnicity estimation, and all other face-based attributes that could be extracted automatically.
Next, the team hopes to make the privacy filter publicly available, either via an app or a website.
“Ten years ago these algorithms would have to be human defined, but now neural nets learn by themselves — you don’t need to supply them anything except training data,” says Aarabi. “In the end they can do some really amazing things. It’s a fascinating time in the field, there’s enormous potential.”
The Latest on: Deep learning
via Google News
The Latest on: Deep learning
- New Deep Learning Discovery Paves Way for AI Interpretation of Brainwave Dataon January 21, 2021 at 1:00 pm
A new paper published in the Journal of Neural Engineering shows the successful first application of self-supervised learning, a very promising recent approach to train deep neural networks, to ...
- Pragma releases execution algorithms with "deep-learning" capabilities for equity tradingon January 20, 2021 at 4:59 am
Pragma, the independent algorithmic trading technology provider, has launched a new generation of deep-learning enabled execution algorithms.
- The AI-Powered Robot That Learnt Curling Using Adaptive Deep Reinforcement Learningon January 18, 2021 at 10:31 pm
In curling, a sport that’s been referred to as “chess on ice” because of the strategy and precision involved, a robot named Curly beat Korean national teams in three out of four official matches.
- Image-based deep learning haplotype-guided study maps the global adaptation of SARS-CoV-2on January 15, 2021 at 8:33 am
A new study used deep learning with image recognition technology to trace the emergence of variants with increased viral fitness. Higher fitness leads to rapid expansion of these lineages in the areas ...
- Researchers use deep learning to study the effect of mental illness and other disorders on the brainon January 14, 2021 at 10:08 pm
Compared to standard machine learning models, deep learning models are largely superior at discerning patterns and discriminative features in brain imaging, despite being more complex in their ...
- Deep learning outperforms standard machine learning in biomedical research applicationson January 14, 2021 at 12:43 pm
Compared to standard machine learning models, deep learning models are largely superior at discerning patterns and discriminative features in brain imaging, despite being more complex in their ...
- Fujitsu Leverages Deep Learning in World’s Most Accurate Recognition of Complex Behaviorson January 13, 2021 at 11:54 am
Fujitsu Laboratories Ltd. has announced the development of a technology that utilizes deep learning to recognize the positions and ...
- Researchers use deep learning to identify gene regulation at single-cell levelon January 13, 2021 at 7:34 am
Researchers describe how they developed a deep-learning framework to observe gene regulation at the cellular level.
- Deep Learning in Machine Vision Market Size, Top Countries Research Trends, Manufacturers, Detailed Analysis and Forecasts 2026on January 12, 2021 at 11:01 pm
Final Report will add the analysis of the impact of COVID-19 on this industry." The Global "Deep Learning in Machine Vision Market" report provides an in-depth market evaluation by highlighting ...
via Bing News