Towards Better Robustness Against Natural Corruptions in Document Tampering Localization
Huiru Shao, Kaizhu Huang, Wei Wang, Xiaowei Huang, Qiufeng Wang
Abstract
Marvelous advances have been exhibited in recent document tampering localization (DTL) systems. However, confronted with corrupted tampered document images, their vulnerability is fatal in real-world scenarios. While robustness against adversarial attack has been extensively studied by adversarial training (AT), the robustness on natural corruptions remains under-explored for DTL. In this paper, to overcome forensic dependency, we propose the adversarial forensic regularization (AFR) based on min-max optimization to improve robustness. Specifically, we adopt mutual information (MI) to represent forensic dependency between two random variable over tampered and authentic pixels spaces, where the MI can be approximated by Jensen-Shannon-Divergence (JSD) with empirical sampling. To further enable a trade-off between predictive representations in clean tampered document pixels and robust ones in corrupted pixels, an additional regularization term is formulated with divergence between clean and perturbed pixels distribution (DDR). Following min-max optimization framework, our method can also work well against adversarial attacks. To evaluate our proposed method, we collect a dataset (i.e., TSorie-CRP) for evaluating robustness against natural corruptions in real scenarios. Extensive experiments demonstrate the effectiveness of our method against natural corruptions. Without any surprise, our method also achieves good performance against adversarial attack on DTL benchmark datasets.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext b38e7073-b0a7-44bb-8dcb-e78bbb9c72fdBuilds on5
- Robust Image Forgery Detection over Online Social Network Shared ImagesHaiwei Wu, Jiantao Zhou, Jinyu Tian, Jun LiuCVPR 2022 · 78 citations
- CosPGD: an efficient white-box adversarial attack for pixel-wise prediction tasksShashank Agnihotri, Steffen Jung, Margret KeuperICML 2024 · 35 citations
- An Adaptive Neural Network for Unsupervised Mosaic Consistency Analysis in Image ForensicsQuentin Bammey, Rafael Grompone von Gioi, Jean-Michel MorelCVPR 2020
- Hierarchical Fine-Grained Image Forgery Detection and LocalizationXiao Guo, Xiaohong Liu, Zhiyuan Ren, Steven Grosz et al.CVPR 2023
- Towards Robust Tampered Text Detection in Document Image: New Dataset and New SolutionChenfan Qu, Chongyu Liu, Yuliang Liu, Xinhong Chen et al.CVPR 2023
Related papers
- Improving Adversarial Robustness via Mutual Information EstimationDawei Zhou, Nannan Wang, Xinbo Gao, Bo Han et al.ICML 2022 · 23 citations
- ADCD-Net: Robust Document Image Forgery Localization via Adaptive DCT Feature and Hierarchical Content DisentanglementKahim Wong, Jicheng Zhou, Haiwei Wu, Yain-Whar Si et al.ICCV 2025 · 3 citations
- DITL2: Dual-Stage Invariance Transfer Learning for Generalizable Document Image Tampering LocalizationSongze Li, Yunfei Guo, Shen Chen, Bin Li et al.ACM MM 2025
- Towards Better Robustness against Common Corruptions for Unsupervised Domain AdaptationZhiqiang Gao, Kaizhu Huang, Rui Zhang, Dawei Liu et al.ICCV 2023 · 8 citations
- Jedi: Entropy-Based Localization and Removal of Adversarial PatchesBilel Tarchoun, Anouar Ben Khalifa, Mohamed Ali Mahjoub, Nael B. Abu-Ghazaleh et al.CVPR 2023
