Research Article

Research on Multimodality Face Antispoofing Model Based on Adversarial Attacks

Table 5

The accuracy of the model before and after adding the defence module to the IR images.

The original authors’ pretrained model (%)After adding the diffusible high-frequency suppression (%)After using the mixed adversarial training (%)Combination of the high-frequency suppression module and the mixed adversarial training (%)

Original96.395.27791.9
FGSM 0.01157.36679.1
DeepFool10.714.567.682.3
NATTACK12.446.378.189.6