Research Article

Research on Multimodality Face Antispoofing Model Based on Adversarial Attacks

Table 3

The accuracy of the model before and after adding the defence module to the RGB images.

The original authors’ pretrained model (%)After adding the diffusible high-frequency suppression (%)After using the mixed adversarial training (%)Combination of the high-frequency suppression module and the mixed adversarial training (%)

Original94.194.482.392.7
FGSM 0.012.58.970.881.5
DeepFool860.372.681
NATTACK24.376.663.2585.96