Research Article

Research on Multimodality Face Antispoofing Model Based on Adversarial Attacks

Table 4

The accuracy of the model before and after adding the defence module to the Depth images.

The original authors’ pretrained model (%)After adding the diffusible high-frequency suppression (%)After using the mixed adversarial training (%)Combination of the high-frequency suppression module and the mixed adversarial training (%)

Original98.588.393.6590.3
FGSM 0.0163.970.282.389.7
DeepFool4.950.864.576.6
NATTACK7.655.9891.284.5