FDNet: A Frequency-Aware Decomposition Network for Robust Face Super-Resolution Against Adversarial Attacks

被引:0
作者
Wang, Jia [1 ]
Li, Peipei [1 ]
Xiang, Liuyu [1 ]
Wang, Rui [1 ]
Zhang, Zhili [2 ]
Tian, Qing [3 ]
He, Zhaofeng [1 ]
机构
[1] Beijing Univ Posts & Telecommun, Sch Artificial Intelligence, Beijing 100876, Peoples R China
[2] Chinese Acad Sci, Inst Software, Beijing 100190, Peoples R China
[3] North China Univ Technol, Sch Informat Sci & Technol, Beijing 100144, Peoples R China
基金
中国国家自然科学基金;
关键词
Noise; Perturbation methods; Superresolution; Faces; Face recognition; Robustness; Feature extraction; Fast Fourier transforms; Frequency-domain analysis; Training; Face super-resolution; adversarial attack; empirical mode decomposition; frequency-aware decomposition; multi-branch structure; ATTENTION; IMAGES;
D O I
10.1109/TIFS.2025.3574956
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Face super-resolution (FSR) is a crucial step in the face analysis pipeline, achieving remarkable progress by applying deep neural networks (DNNs). However, DNN-based FSR models are not robust enough and may suffer significant performance degradation due to subtle adversarial perturbations. In addition, the high-frequency details of images restored by existing models are insufficient, especially at large upsampling factors. In this paper, we propose a frequency-aware decomposition network (FDNet) for robust face super-resolution, which aims to defend against adversarial attacks and obtain face images with fidelity. Observing that the noise introduced by adversarial attacks is often intricately mixed with the high-frequency information of the input image, we decompose and process the features of different frequencies separately to eliminate harmful perturbations and enhance high-frequency information. Specifically, by leveraging the frequency-aware capability of empirical mode decomposition (EMD), we propose an EMD-based multi-branch structure. The framework implicitly compels different branches to adaptively extract features from distinct frequency bands, limiting the adversarial noise into decoupled components restricted to specific branches. It also improves the recovery of high-frequency information, which is conducive to producing more credible results. Furthermore, we introduce a high-frequency noise suppressor capable of randomly eliminating imperceptible noise in the high-frequency components. Quantitative and qualitative results demonstrate the superior robustness of our proposed method against adversarial attacks, showing better fidelity in image reconstruction compared to state-of-the-art FSR methods, especially for upscaling factors of 8 and 16.
引用
收藏
页码:6175 / 6189
页数:15
相关论文
共 79 条
[61]  
Xu WL, 2017, Arxiv, DOI [arXiv:1704.01155, DOI 10.48550/ARXIV.1704.01155]
[62]   Wavelet-based residual attention network for image super-resolution [J].
Xue, Shengke ;
Qiu, Wenyuan ;
Liu, Fan ;
Jin, Xinyu .
NEUROCOMPUTING, 2020, 382 :116-126
[63]   When Deep Fool Meets Deep Prior: Adversarial Attack on Super-Resolution Network [J].
Yin, Minghao ;
Zhang, Yongbing ;
Li, Xiu ;
Wang, Shiqi .
PROCEEDINGS OF THE 2018 ACM MULTIMEDIA CONFERENCE (MM'18), 2018, :1930-1938
[64]   Face Super-Resolution Guided by Facial Component Heatmaps [J].
Yu, Xin ;
Fernando, Basura ;
Ghanem, Bernard ;
Porikli, Fatih ;
Hartley, Richard .
COMPUTER VISION - ECCV 2018, PT IX, 2018, 11213 :219-235
[65]   Super-Resolving Very Low-Resolution Face Images with Supplementary Attributes [J].
Yu, Xin ;
Fernando, Basura ;
Hartley, Richard ;
Porikli, Fatih .
2018 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2018, :908-917
[66]  
Yu X, 2017, AAAI CONF ARTIF INTE, P4327
[67]   Hallucinating Very Low-Resolution Unaligned and Noisy Face Images by Transformative Discriminative Autoencoders [J].
Yu, Xin ;
Porikli, Fatih .
30TH IEEE CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2017), 2017, :5367-5375
[68]   Ultra-Resolving Face Images by Discriminative Generative Networks [J].
Yu, Xin ;
Porikli, Fatih .
COMPUTER VISION - ECCV 2016, PT V, 2016, 9909 :318-333
[69]   Towards Robust Rain Removal Against Adversarial Attacks: A Comprehensive Benchmark Analysis and Beyond [J].
Yu, Yi ;
Yang, Wenhan ;
Tan, Yap-Peng ;
Kot, Alex C. .
2022 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR 2022), 2022, :6003-6012
[70]   Robust Real-World Image Super-Resolution against Adversarial Attacks [J].
Yue, Jiutao ;
Li, Haofeng ;
Wei, Pengxu ;
Li, Guanbin ;
Lin, Liang .
PROCEEDINGS OF THE 29TH ACM INTERNATIONAL CONFERENCE ON MULTIMEDIA, MM 2021, 2021, :5148-5157