{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,4]],"date-time":"2026-06-04T16:03:40Z","timestamp":1780589020212,"version":"3.54.1"},"publisher-location":"New York, NY, USA","reference-count":96,"publisher":"ACM","license":[{"start":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T00:00:00Z","timestamp":1780272000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"funder":[{"name":"NSF (National Science Foundation)","award":["2107296"],"award-info":[{"award-number":["2107296"]}]},{"DOI":"10.13039\/100000001","name":"NSF (National Science Foundation)","doi-asserted-by":"publisher","award":["2239646"],"award-info":[{"award-number":["2239646"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/100000001","name":"NSF (National Science Foundation)","doi-asserted-by":"publisher","award":["2348919"],"award-info":[{"award-number":["2348919"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/100000001","name":"NSF (National Science Foundation)","doi-asserted-by":"publisher","award":["2107290"],"award-info":[{"award-number":["2107290"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2026,6]]},"DOI":"10.1145\/3779208.3785292","type":"proceedings-article","created":{"date-parts":[[2026,6,4]],"date-time":"2026-06-04T15:21:58Z","timestamp":1780586518000},"page":"1291-1306","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["Unequal Privacy: Auditing Demographic Bias Vulnerabilities in Visual Protection Systems"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0007-3740-5641","authenticated-orcid":false,"given":"Seyyed Mohammad Sadegh","family":"Moosavi Khorzooghi","sequence":"first","affiliation":[{"name":"Department of Computer Science and Engineering, The University of Texas at Arlington, Arlington, Texas, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3744-4847","authenticated-orcid":false,"given":"Poojitha","family":"Thota","sequence":"additional","affiliation":[{"name":"Department of Computer Science and Engineering, The University of Texas at Arlington, Arlington, Texas, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7423-9116","authenticated-orcid":false,"given":"Mohit","family":"Singhal","sequence":"additional","affiliation":[{"name":"Northeastern University, Boston, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5251-6186","authenticated-orcid":false,"given":"Abolfazl","family":"Asudeh","sequence":"additional","affiliation":[{"name":"University of Illinois Chicago, Chicago, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4627-9065","authenticated-orcid":false,"given":"Gautam","family":"Das","sequence":"additional","affiliation":[{"name":"The University of Texas at Arlington, Arlington, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0539-3742","authenticated-orcid":false,"given":"Shirin","family":"Nilizadeh","sequence":"additional","affiliation":[{"name":"Department of Computer Science and Engineering, The University of Texas at Arlington, Arlington, Texas, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2026,6,4]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"2024. Face+ + . https:\/\/www.faceplusplus.com\/."},{"key":"e_1_3_2_1_2_1","volume-title":"Openface: an open source facial behavior analysis toolkit. In 2016 IEEE winter conference on applications of computer vision (WACV)","author":"Baltru\u0161aitis Tadas","unstructured":"Tadas Baltru\u0161aitis, Peter Robinson, and Louis-Philippe Morency. 2016. Openface: an open source facial behavior analysis toolkit. In 2016 IEEE winter conference on applications of computer vision (WACV). IEEE, 1\u201310."},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1145\/1520340.1520704"},{"key":"e_1_3_2_1_4_1","volume-title":"Fairlearn: A toolkit for assessing and improving fairness in AI. Microsoft, Tech. Rep. MSR-TR-2020-32","author":"Bird Sarah","year":"2020","unstructured":"Sarah Bird, Miro Dud\u00edk, Richard Edgar, Brandon Horn, Roman Lutz, Vanessa Milan, Mehrnoosh Sameki, Hanna Wallach, and Kathleen Walker. 2020. Fairlearn: A toolkit for assessing and improving fairness in AI. Microsoft, Tech. Rep. MSR-TR-2020-32 (2020)."},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/358916.358935"},{"key":"e_1_3_2_1_6_1","volume-title":"Eye-tracked Virtual Reality: A Comprehensive Survey on Methods and Privacy Challenges. arXiv preprint arXiv:2305.14080","author":"Bozkir Efe","year":"2023","unstructured":"Efe Bozkir, S\u00fcleyman \u00d6zdel, Mengdi Wang, Brendan David-John, Hong Gao, Kevin Butler, Eakta Jain, and Enkelejda Kasneci. 2023. Eye-tracked Virtual Reality: A Comprehensive Survey on Methods and Privacy Challenges. arXiv preprint arXiv:2305.14080 (2023)."},{"key":"e_1_3_2_1_7_1","volume-title":"Conference on fairness, accountability and transparency. PMLR, 77\u201391","author":"Buolamwini Joy","year":"2018","unstructured":"Joy Buolamwini and Timnit Gebru. 2018. Gender shades: Intersectional accuracy disparities in commercial gender classification. In Conference on fairness, accountability and transparency. PMLR, 77\u201391."},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"crossref","unstructured":"Nicholas Carlini and David Wagner. 2017. Towards evaluating the robustness of neural networks. In 2017 ieee symposium on security and privacy (sp). Ieee 39\u201357.","DOI":"10.1109\/SP.2017.49"},{"key":"e_1_3_2_1_9_1","volume-title":"Proceedings on Privacy Enhancing Technologies","author":"Chandrasekaran Varun","year":"2021","unstructured":"Varun Chandrasekaran, Chuhan Gao, Brian Tang, Kassem Fawaz, Somesh Jha, and Suman Banerjee. 2021. Face-off: Adversarial face obfuscation. Proceedings on Privacy Enhancing Technologies (2021)."},{"key":"e_1_3_2_1_10_1","volume-title":"Determining the Robustness of Privacy Enhancing DeID Against the ReID Adversary: An Experimental Study. In The 16th International Conference on Availability, Reliability and Security. 1\u201311","author":"Chattopadhyay Ankur","year":"2021","unstructured":"Ankur Chattopadhyay, Robert Ruska, and Levi Pfantz. 2021. Determining the Robustness of Privacy Enhancing DeID Against the ReID Adversary: An Experimental Study. In The 16th International Conference on Availability, Reliability and Security. 1\u201311."},{"key":"e_1_3_2_1_11_1","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition. 6478\u20136487","author":"Chen Jia-Wei","year":"2021","unstructured":"Jia-Wei Chen, Li-Ju Chen, Chia-Mu Yu, and Chun-Shien Lu. 2021. Perceptual indistinguishability-net (pi-net): Facial image obfuscation with manipulable semantics. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition. 6478\u20136487."},{"key":"e_1_3_2_1_12_1","unstructured":"Valeriia Cherepanova Micah Goldblum Harrison Foley Shiyuan Duan John Dickerson Gavin Taylor and Tom Goldstein. 2021. LowKey: leveraging adversarial attacks to protect social media users from facial recognition. arXiv preprint arXiv:2101.07922(2021)."},{"key":"e_1_3_2_1_13_1","volume-title":"Histograms of oriented gradients for human detection. In 2005 IEEE computer society conference on computer vision and pattern recognition (CVPR'05)","author":"Dalal Navneet","unstructured":"Navneet Dalal and Bill Triggs. 2005. Histograms of oriented gradients for human detection. In 2005 IEEE computer society conference on computer vision and pattern recognition (CVPR'05), Vol. 1. Ieee, 886\u2013893."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00482"},{"key":"e_1_3_2_1_15_1","volume-title":"Retinaface: Single-stage dense face localisation in the wild. arXiv preprint arXiv:1905.00641","author":"Deng Jiankang","year":"2019","unstructured":"Jiankang Deng, Jia Guo, Yuxiang Zhou, Jinke Yu, Irene Kotsia, and Stefanos Zafeiriou. 2019. Retinaface: Single-stage dense face localisation in the wild. arXiv preprint arXiv:1905.00641 (2019)."},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1109\/BTAS.2014.6996249"},{"key":"e_1_3_2_1_17_1","volume-title":"33rd International Colloquium, ICALP 2006, Venice, Italy, July 10-14, 2006, Proceedings, Part II 33","author":"Dwork Cynthia","year":"2006","unstructured":"Cynthia Dwork. 2006. Differential privacy. In Automata, Languages and Programming: 33rd International Colloquium, ICALP 2006, Venice, Italy, July 10-14, 2006, Proceedings, Part II 33. Springer, 1\u201312."},{"key":"e_1_3_2_1_18_1","volume-title":"FoggySight: a scheme for facial lookup privacy. arXiv preprint arXiv:2012.08588","author":"Evtimov Ivan","year":"2020","unstructured":"Ivan Evtimov, Pascal Sturmfels, and Tadayoshi Kohno. 2020. FoggySight: a scheme for facial lookup privacy. arXiv preprint arXiv:2012.08588 (2020)."},{"key":"e_1_3_2_1_19_1","volume-title":"2019 IEEE international conference on multimedia and expo (ICME). IEEE, 784\u2013789","author":"Fan Liyue","year":"2019","unstructured":"Liyue Fan. 2019. Practical image obfuscation with provable privacy. In 2019 IEEE international conference on multimedia and expo (ICME). IEEE, 784\u2013789."},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/2783258.2783311"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00947"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"crossref","first-page":"102036","DOI":"10.1016\/j.jksuci.2024.102036","article-title":"Securing synthetic faces: A GAN-blockchain approach to privacy-enhanced facial recognition","volume":"36","author":"Nawaz Ul Ghani Muhammad Ahmad","year":"2024","unstructured":"Muhammad Ahmad Nawaz Ul Ghani, Kun She, Muhammad Arslan Rauf, Masoud Alajmi, Yazeed Yasin Ghadi, and Abdulmohsen Algarni. 2024. Securing synthetic faces: A GAN-blockchain approach to privacy-enhanced facial recognition. Journal of King Saud University-Computer and Information Sciences 36, 4 (2024), 102036.","journal-title":"Journal of King Saud University-Computer and Information Sciences"},{"key":"e_1_3_2_1_23_1","volume-title":"International Workshop on Privacy Enhancing Technologies. Springer, 227\u2013242","author":"Gross Ralph","year":"2005","unstructured":"Ralph Gross, Edoardo Airoldi, Bradley Malin, and Latanya Sweeney. 2005. Integrating utility into face de-identification. In International Workshop on Privacy Enhancing Technologies. Springer, 227\u2013242."},{"key":"e_1_3_2_1_24_1","volume-title":"Integrating Utility into Face De-identification","author":"Gross Ralph","unstructured":"Ralph Gross, Edoardo Airoldi, Bradley Malin, and Latanya Sweeney. 2006. Integrating Utility into Face De-identification. In Privacy Enhancing Technologies, George Danezis and David Martin (Eds.). Springer Berlin Heidelberg, Berlin, Heidelberg, 227\u2013242."},{"key":"e_1_3_2_1_25_1","volume-title":"Privacy Enhancing Technologies: 5th International Workshop, PET 2005","author":"Gross Ralph","year":"2006","unstructured":"Ralph Gross, Edoardo Airoldi, Bradley Malin, and Latanya Sweeney. 2006. Integrating utility into face de-identification. In Privacy Enhancing Technologies: 5th International Workshop, PET 2005, Cavtat, Croatia, May 30-June 1, 2005, Revised Selected Papers 5. Springer, 227\u2013242."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW.2006.125"},{"key":"e_1_3_2_1_27_1","volume-title":"Face recognition vendor test (fvrt): Part 3, demographic effects","author":"Grother Patrick","unstructured":"Patrick Grother, Mei Ngan, and Kayee Hanaoka. 2019. Face recognition vendor test (fvrt): Part 3, demographic effects. National Institute of Standards and Technology Gaithersburg, MD."},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1109\/FG47880.2020.00021"},{"key":"e_1_3_2_1_29_1","volume-title":"A Utility-Preserving GAN for Face Obscuration. arXiv preprint arXiv:1906.11979","author":"Hao Hanxiang","year":"2019","unstructured":"Hanxiang Hao, David G\u00fcera, Amy R Reibman, and Edward J Delp. 2019. A Utility-Preserving GAN for Face Obscuration. arXiv preprint arXiv:1906.11979 (2019)."},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1109\/FG47880.2020.00021"},{"key":"e_1_3_2_1_31_1","volume-title":"Equality of opportunity in supervised learning. Advances in neural information processing systems 29","author":"Hardt Moritz","year":"2016","unstructured":"Moritz Hardt, Eric Price, and Nati Srebro. 2016. Equality of opportunity in supervised learning. Advances in neural information processing systems 29 (2016)."},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/3173574.3173621"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1515\/popets-2016-0047"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"crossref","unstructured":"John J Howard Yevgeniy B Sirotin and Arun R Vemury. 2019. The effect of broad and specific demographic homogeneity on the imposter distributions and false match rates in face recognition algorithm performance. In 2019 ieee 10th international conference on biometrics theory applications and systems(btas). IEEE 1\u20138.","DOI":"10.1109\/BTAS46853.2019.9186002"},{"key":"e_1_3_2_1_35_1","unstructured":"Gary B. Huang Manu Ramesh Tamara Berg and Erik Learned-Miller. 2007. Labeled Faces in the Wild: A Database for Studying Face Recognition in Unconstrained Environments. Technical Report 07-49. University of Massachusetts Amherst."},{"key":"e_1_3_2_1_36_1","volume-title":"Proceedings of the IEEE\/CVF Winter Conference on Applications of Computer Vision. 1329\u20131338","author":"Hukkel\u00e5s H\u00e5kon","year":"2023","unstructured":"H\u00e5kon Hukkel\u00e5s and Frank Lindseth. 2023. Deepprivacy2: Towards realistic full-body anonymization. In Proceedings of the IEEE\/CVF Winter Conference on Applications of Computer Vision. 1329\u20131338."},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-33720-9_44"},{"key":"e_1_3_2_1_38_1","unstructured":"H\u00e5kon Hukkel\u00e5s. 2019. DeepPrivacy GitHub Repository. https:\/\/github.com\/hukkelas\/DeepPrivacy. Accessed: 2025-04-20."},{"key":"e_1_3_2_1_39_1","unstructured":"H\u00e5kon Hukkel\u00e5s. 2023. DeepPrivacy2 GitHub Repository. https:\/\/github.com\/hukkelas\/DeepPrivacy2. Accessed: 2025-04-20."},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1109\/FG.2019.8756625"},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813603"},{"key":"e_1_3_2_1_42_1","volume-title":"ACM Symposium on Eye Tracking Research and Applications. 1\u20133.","author":"John Brendan","year":"2020","unstructured":"Brendan John, Ao Liu, Lirong Xia, Sanjeev Koppal, and Eakta Jain. 2020. Let it snow: Adding pixel noise to protect the user's identity. In ACM Symposium on Eye Tracking Research and Applications. 1\u20133."},{"key":"e_1_3_2_1_43_1","volume-title":"Real-time facial surface geometry from monocular video on mobile GPUs. arXiv preprint arXiv:1907.06724","author":"Kartynnik Yury","year":"2019","unstructured":"Yury Kartynnik, Artsiom Ablavatski, Ivan Grishchenko, and Matthias Grundmann. 2019. Real-time facial surface geometry from monocular video on mobile GPUs. arXiv preprint arXiv:1907.06724 (2019)."},{"key":"e_1_3_2_1_44_1","volume-title":"Proceedings on Privacy Enhancing Technologies 2023","author":"Sadegh Moosavi Khorzooghi Seyyed Mohammad","year":"2023","unstructured":"Seyyed Mohammad Sadegh Moosavi Khorzooghi and Shirin Nilizadeh. 2023. Examining StyleGAN as a Utility-Preserving Face De-identification Method. Proceedings on Privacy Enhancing Technologies 2023, 4 (2023)."},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.5555\/1577069.1755843"},{"key":"e_1_3_2_1_46_1","volume-title":"Proceedings of the 17th International Conference on Pattern Recognition, 2004. ICPR 2004.","volume":"4","author":"Kitahara Itaru","year":"2004","unstructured":"Itaru Kitahara, Kiyoshi Kogure, and Norihiro Hagita. 2004. Stealth vision for protecting privacy. In Proceedings of the 17th International Conference on Pattern Recognition, 2004. ICPR 2004., Vol. 4. IEEE, 404\u2013407."},{"key":"e_1_3_2_1_47_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2012.2214212"},{"key":"e_1_3_2_1_48_1","volume-title":"Applications of Digital Image Processing XXXVI","author":"Korshunov Pavel","unstructured":"Pavel Korshunov, Andrea Melle, Jean-Luc Dugelay, and Touradj Ebrahimi. 2013. Framework for objective evaluation of privacy filters. In Applications of Digital Image Processing XXXVI, Vol. 8856. SPIE, 265\u2013276."},{"key":"e_1_3_2_1_49_1","volume-title":"2020 19th IEEE international conference on machine learning and applications (ICMLA). IEEE, 1028\u20131035","author":"Krishnan Anoop","year":"2020","unstructured":"Anoop Krishnan, Ali Almadan, and Ajita Rattani. 2020. Understanding fairness of gender classification algorithms across gender-race groups. In 2020 19th IEEE international conference on machine learning and applications (ICMLA). IEEE, 1028\u20131035."},{"key":"e_1_3_2_1_50_1","doi-asserted-by":"publisher","DOI":"10.1002\/1099-0720(200101\/02)15:1<101::AID-ACP697>3.0.CO;2-7"},{"key":"e_1_3_2_1_51_1","volume-title":"Proceedings of the 29th ACM international conference on multimedia. 3891\u20133899","author":"Li Jingzhi","year":"2021","unstructured":"Jingzhi Li, Lutong Han, Ruoyu Chen, Hua Zhang, Bing Han, Lili Wang, and Xiaochun Cao. 2021. Identity-preserving face anonymization via adaptively facial attributes obfuscation. In Proceedings of the 29th ACM international conference on multimedia. 3891\u20133899."},{"key":"e_1_3_2_1_52_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00520"},{"key":"e_1_3_2_1_53_1","volume-title":"Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition workshops. 0\u20130.","author":"Li Tao","year":"2019","unstructured":"Tao Li and Lei Lin. 2019. Anonymousnet: Natural face de-identification with measurable privacy. In Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition workshops. 0\u20130."},{"key":"e_1_3_2_1_54_1","volume-title":"Proceedings of the ACM on Human-Computer Interaction 1, CSCW(2017)","author":"Li Yifang","year":"2017","unstructured":"Yifang Li, Nishant Vishwamitra, Bart P Knijnenburg, Hongxin Hu, and Kelly Caine. 2017. Effectiveness and users' experience of obfuscation as a privacy-enhancing technology for sharing photos. Proceedings of the ACM on Human-Computer Interaction 1, CSCW(2017), 1\u201324."},{"key":"e_1_3_2_1_55_1","volume-title":"Berg","author":"Liu Wei","year":"2016","unstructured":"Wei Liu, Dragomir Anguelov, Dumitru Erhan, Christian Szegedy, Scott Reed, Cheng-Yang Fu, and Alexander C. Berg. 2016. SSD: Single Shot MultiBox Detector. In ECCV."},{"key":"e_1_3_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2015.425"},{"key":"e_1_3_2_1_57_1","volume-title":"Applications of Digital Image Processing XLVI","author":"Lu Yuhang","unstructured":"Yuhang Lu and Touradj Ebrahimi. 2023. Explanation of face recognition via saliency maps. In Applications of Digital Image Processing XLVI, Vol. 12674. SPIE, 218\u2013229."},{"key":"e_1_3_2_1_58_1","volume-title":"Juhyun Lee, et al.","author":"Lugaresi Camillo","year":"2019","unstructured":"Camillo Lugaresi, Jiuqiang Tang, Hadon Nash, Chris McClanahan, Esha Uboweja, Michael Hays, Fan Zhang, Chuo-Ling Chang, Ming Guang Yong, Juhyun Lee, et al. 2019. Mediapipe: A framework for building perception pipelines. arXiv preprint arXiv:1906.08172 (2019)."},{"key":"e_1_3_2_1_59_1","volume-title":"Towards deep learning models resistant to adversarial attacks. arXiv preprint arXiv:1706.06083","author":"Madry Aleksander","year":"2017","unstructured":"Aleksander Madry, Aleksandar Makelov, Ludwig Schmidt, Dimitris Tsipras, and Adrian Vladu. 2017. Towards deep learning models resistant to adversarial attacks. arXiv preprint arXiv:1706.06083 (2017)."},{"key":"e_1_3_2_1_60_1","unstructured":"Maksym Maximov. 2020. CIAGAN GitHub Repository. https:\/\/github.com\/dvl-tum\/ciagan. Accessed: 2025-04-20."},{"key":"e_1_3_2_1_61_1","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR).","author":"Maximov Maxim","year":"2020","unstructured":"Maxim Maximov, Ismail Elezi, and Laura Leal-Taixe. 2020. CIAGAN: Conditional Identity Anonymization Generative Adversarial Networks. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR)."},{"key":"e_1_3_2_1_62_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00549"},{"key":"e_1_3_2_1_63_1","volume-title":"Defeating Image Obfuscation with Deep Learning. CoRR abs\/1609.00408","author":"McPherson Richard","year":"2016","unstructured":"Richard McPherson, Reza Shokri, and Vitaly Shmatikov. 2016. Defeating Image Obfuscation with Deep Learning. CoRR abs\/1609.00408 (2016). arXiv:1609.00408 https:\/\/arxiv.org\/abs\/1609.00408"},{"key":"e_1_3_2_1_64_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3096024"},{"key":"e_1_3_2_1_65_1","volume-title":"Proceedings of the IEEE international conference on computer vision. 4875\u20134884","author":"Najibi Mahyar","year":"2017","unstructured":"Mahyar Najibi, Pouya Samangouei, Rama Chellappa, and Larry S Davis. 2017. Ssh: Single stage headless face detector. In Proceedings of the IEEE international conference on computer vision. 4875\u20134884."},{"key":"e_1_3_2_1_66_1","doi-asserted-by":"publisher","DOI":"10.1145\/3382507.3418833"},{"key":"e_1_3_2_1_67_1","doi-asserted-by":"publisher","DOI":"10.1109\/TKDE.2005.32"},{"key":"e_1_3_2_1_68_1","volume-title":"Fairly private: Investigating the fairness of visual privacy preservation algorithms. arXiv preprint arXiv:2301.05012","author":"Noiret Sophie","year":"2023","unstructured":"Sophie Noiret, Siddharth Ravi, Martin Kampel, and Francisco Florez-Revuelta. 2023. Fairly private: Investigating the fairness of visual privacy preservation algorithms. arXiv preprint arXiv:2301.05012 (2023)."},{"key":"e_1_3_2_1_69_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.image.2019.115699"},{"key":"e_1_3_2_1_70_1","volume-title":"Luis RP, Jian Jiang, et al.","author":"Perov Ivan","year":"2020","unstructured":"Ivan Perov, Daiheng Gao, Nikolay Chervoniy, Kunlin Liu, Sugasa Marangonda, Chris Um\u00e9, Mr Dpfks, Carl Shift Facenheim, Luis RP, Jian Jiang, et al. 2020. DeepFaceLab: Integrated, flexible and extensible face-swapping framework. arXiv preprint arXiv:2005.05535 (2020)."},{"key":"e_1_3_2_1_71_1","volume-title":"Data poisoning won't save you from facial recognition. arXiv preprint arXiv:2106.14851","author":"Radiya-Dixit Evani","year":"2021","unstructured":"Evani Radiya-Dixit, Sanghyun Hong, Nicholas Carlini, and Florian Tram\u00e8r. 2021. Data poisoning won't save you from facial recognition. arXiv preprint arXiv:2106.14851 (2021)."},{"key":"e_1_3_2_1_72_1","volume-title":"Image obfuscation for privacy-preserving machine learning. arXiv preprint arXiv:2010.10139","author":"Raynal Mathilde","year":"2020","unstructured":"Mathilde Raynal, Radhakrishna Achanta, and Mathias Humbert. 2020. Image obfuscation for privacy-preserving machine learning. arXiv preprint arXiv:2010.10139 (2020)."},{"key":"e_1_3_2_1_73_1","volume-title":"2021 Third IEEE International Conference on Trust, Privacy and Security in Intelligent Systems and Applications (TPS-ISA). IEEE, 80\u201389","author":"Reilly Dominick","year":"2021","unstructured":"Dominick Reilly and Liyue Fan. 2021. A comparative evaluation of differentially private image obfuscation. In 2021 Third IEEE International Conference on Trust, Privacy and Security in Intelligent Systems and Applications (TPS-ISA). IEEE, 80\u201389."},{"key":"e_1_3_2_1_74_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01246-5_38"},{"key":"e_1_3_2_1_75_1","doi-asserted-by":"publisher","unstructured":"Joseph Robinson. 2022. Balanced Faces in the Wild. doi:10.21227\/nmsj-df12","DOI":"10.21227\/nmsj-df12"},{"key":"e_1_3_2_1_76_1","volume-title":"Fairness properties of face recognition and obfuscation systems. arXiv preprint arXiv:2108.02707 7","author":"Rosenberg Harrison","year":"2021","unstructured":"Harrison Rosenberg, Brian Tang, Kassem Fawaz, and Somesh Jha. 2021. Fairness properties of face recognition and obfuscation systems. arXiv preprint arXiv:2108.02707 7 (2021)."},{"key":"e_1_3_2_1_77_1","volume-title":"32nd USENIX Security Symposium (USENIX Security 23)","author":"Rosenberg Harrison","year":"2023","unstructured":"Harrison Rosenberg, Brian Tang, Kassem Fawaz, and Somesh Jha. 2023. Fairness properties of face recognition and obfuscation systems. In 32nd USENIX Security Symposium (USENIX Security 23). 7231\u20137248."},{"key":"e_1_3_2_1_78_1","volume-title":"Improved techniques for training gans. Advances in neural information processing systems 29","author":"Salimans Tim","year":"2016","unstructured":"Tim Salimans, Ian Goodfellow, Wojciech Zaremba, Vicki Cheung, Alec Radford, and Xi Chen. 2016. Improved techniques for training gans. Advances in neural information processing systems 29 (2016)."},{"key":"e_1_3_2_1_79_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2015.7298682"},{"key":"e_1_3_2_1_80_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.74"},{"key":"e_1_3_2_1_81_1","doi-asserted-by":"publisher","DOI":"10.1109\/ASYU50717.2020.9259802"},{"key":"e_1_3_2_1_82_1","unstructured":"Shawn Shan. 2020. Fawkes GitHub Repository. https:\/\/github.com\/Shawn-Shan\/fawkes. Accessed: 2025-04-20."},{"key":"e_1_3_2_1_83_1","volume-title":"Fawkes: Protecting privacy against unauthorized deep learning models. In 29th { USENIX} Security Symposium ({ USENIX} Security 20). 1589\u20131604.","author":"Shan Shawn","year":"2020","unstructured":"Shawn Shan, Emily Wenger, Jiayun Zhang, Huiying Li, Haitao Zheng, and Ben Y Zhao. 2020. Fawkes: Protecting privacy against unauthorized deep learning models. In 29th { USENIX} Security Symposium ({ USENIX} Security 20). 1589\u20131604."},{"key":"e_1_3_2_1_84_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00530"},{"key":"e_1_3_2_1_85_1","volume-title":"Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition (CVPR).","author":"Sun Yi","year":"2014","unstructured":"Yi Sun, Xiaogang Wang, and Xiaoou Tang. 2014. Deep Learning Face Representation from Predicting 10,000 Classes. In Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition (CVPR)."},{"key":"e_1_3_2_1_86_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2014.220"},{"key":"e_1_3_2_1_87_1","volume-title":"Fantomas: Evaluating Reversibility of Face Anonymizations Using a General Deep Learning Attacker. arXiv preprint arXiv:2210.10651","author":"Todt Julian","year":"2022","unstructured":"Julian Todt, Simon Hanisch, and Thorsten Strufe. 2022. Fantomas: Evaluating Reversibility of Face Anonymizations Using a General Deep Learning Attacker. arXiv preprint arXiv:2210.10651 (2022)."},{"key":"e_1_3_2_1_88_1","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2020-0073"},{"key":"e_1_3_2_1_89_1","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition. 3281\u20133289","author":"Wang Hui-Po","year":"2021","unstructured":"Hui-Po Wang, Tribhuvanesh Orekondy, and Mario Fritz. 2021. Infoscrub: Towards attribute privacy by targeted obfuscation. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition. 3281\u20133289."},{"key":"e_1_3_2_1_90_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00078"},{"key":"e_1_3_2_1_91_1","volume-title":"The 2024 ACM Conference on Fairness, Accountability, and Transparency. 764\u2013775","author":"Watkins Elizabeth Anne","year":"2024","unstructured":"Elizabeth Anne Watkins and Jiahao Chen. 2024. The four-fifths rule is not disparate impact: a woeful tale of epistemic trespassing in algorithmic fairness. In The 2024 ACM Conference on Fairness, Accountability, and Transparency. 764\u2013775."},{"key":"e_1_3_2_1_92_1","volume-title":"An empirical study on evaluation metrics of generative adversarial networks. arXiv preprint arXiv:1806.07755","author":"Xu Qiantong","year":"2018","unstructured":"Qiantong Xu, Gao Huang, Yang Yuan, Chuan Guo, Yu Sun, Felix Wu, and Kilian Weinberger. 2018. An empirical study on evaluation metrics of generative adversarial networks. arXiv preprint arXiv:1806.07755 (2018)."},{"key":"e_1_3_2_1_93_1","volume-title":"Proceedings of the AAAI Conference on Artificial Intelligence","volume":"34","author":"Yang Jing","year":"2020","unstructured":"Jing Yang, Adrian Bulat, and Georgios Tzimiropoulos. 2020. Fan-face: a simple orthogonal improvement to deep face recognition. In Proceedings of the AAAI Conference on Artificial Intelligence, Vol. 34. 12621\u201312628."},{"key":"e_1_3_2_1_94_1","doi-asserted-by":"publisher","DOI":"10.1145\/3479594"},{"key":"e_1_3_2_1_95_1","doi-asserted-by":"publisher","DOI":"10.1109\/LSP.2016.2603342"},{"key":"e_1_3_2_1_96_1","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v37i12.26712"}],"event":{"name":"ASIA CCS '26: ACM Asia Conference on Computer and Communications Security","location":"Bangalore India","acronym":"ASIA CCS '26","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the ACM Asia Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3779208.3785292","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3779208.3785292","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,6,4]],"date-time":"2026-06-04T15:43:57Z","timestamp":1780587837000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3779208.3785292"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,6]]},"references-count":96,"alternative-id":["10.1145\/3779208.3785292","10.1145\/3779208"],"URL":"https:\/\/doi.org\/10.1145\/3779208.3785292","relation":{},"subject":[],"published":{"date-parts":[[2026,6]]},"assertion":[{"value":"2026-06-04","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}