Defeating DeepFakes via Adversarial Visual Reconstruction
Ziwen He, Wei Wang, Weinan Guan, Jing Dong, Tieniu Tan
Abstract
Existing DeepFake detection methods focus on passive detection, i.e., they detect fake face images by exploiting the artifacts produced during DeepFake manipulation. These detection-based methods have their limitation that they only work for ex-post forensics but cannot erase the negative influences of DeepFakes. In this work, we propose a proactive framework for combating DeepFake before the data manipulations. The key idea is to find a well defined substitute latent representation to reconstruct target facial data, leading the reconstructed face to disable the DeepFake generation. To this end, we invert face images into latent codes with a well trained auto-encoder, and search the adversarial face embeddings in their neighbor with the gradient descent method. Extensive experiments on three typical DeepFake manipulation methods, facial attribute editing, face expression manipulation, and face swapping, have demonstrated the effectiveness of our method in different settings.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Cited by top-tier papers5
- SepMark: Deep Separable Watermarking for Unified Source Tracing and Deepfake DetectionXiaoshuai Wu, Xin Liao, Bo OuACM MM 2023 · 74 citations
- Disrupting Diffusion: Token-Level Attention Erasure Attack against Diffusion-based CustomizationYisu Liu, Jinyang An, Wanqian Zhang, Dayan Wu et al.ACM MM 2024 · 16 citations
- Adversarial Robust Safeguard for Evading Deep Facial ManipulationJiazhi Guan, Yi Zhao, Zhuoer Xu, Changhua Meng et al.AAAI 2024 · 11 citations
- NullSwap: Proactive Identity Cloaking Against Deepfake Face SwappingTianyi Wang, Shuaicheng Niu, Harry Cheng, Xiao Zhang et al.ICCV 2025 · 4 citations
- PhantomSeal: Proactive Deepfakes Defense with Identity/Context Protection and Forensic TracingLiangqin Ren, Zeyan Liu, Ye Wang, Yuxin Chen et al.CCS 2026
Related papers
- DeepProtect: Proactive Face-Swapping Defense using Identity Blending and Attribute DistortionEungi Lee, Seung-hyeok Back, Hyung-Il Kim, Seok Bong YooCVPR 2026
- Initiative Defense against Facial ManipulationQidong Huang, Jie Zhang, Wenbo Zhou, Weiming Zhang et al.AAAI 2021 · 80 citations
- SCOL: Style Code Orchestration in Latent Space for Proactive Face-Swapping DefenseEungi Lee, Jae Hyun Yoon, Seok Bong YooACM MM 2025
- BiFPro: A Bidirectional Facial-data Protection Framework against DeepFakeHonggu Liu, Xiaodan Li, Wenbo Zhou, Han Fang et al.ACM MM 2023 · 12 citations
- Artificial Fingerprinting for Generative Models: Rooting Deepfake Attribution in Training DataNing Yu, Vladislav Skripniuk, Sahar Abdelnabi, Mario FritzICCV 2021 · 305 citations
