• Search Research Projects
  • Search Researchers
  • How to Use
  1. Back to previous page

Development of Client-Server-Based Framework for Privacy-Preserving Media Recognition

Research Project

Project/Area Number 17K00235
Research Category

Grant-in-Aid for Scientific Research (C)

Allocation TypeMulti-year Fund
Section一般
Research Field Perceptual information processing
Research InstitutionOsaka University

Principal Investigator

NAKAMURA KAZUAKI  大阪大学, 工学研究科, 助教 (10584047)

Project Period (FY) 2017-04-01 – 2021-03-31
Project Status Completed (Fiscal Year 2020)
Budget Amount *help
¥4,680,000 (Direct Cost: ¥3,600,000、Indirect Cost: ¥1,080,000)
Fiscal Year 2020: ¥910,000 (Direct Cost: ¥700,000、Indirect Cost: ¥210,000)
Fiscal Year 2019: ¥1,950,000 (Direct Cost: ¥1,500,000、Indirect Cost: ¥450,000)
Fiscal Year 2018: ¥1,040,000 (Direct Cost: ¥800,000、Indirect Cost: ¥240,000)
Fiscal Year 2017: ¥780,000 (Direct Cost: ¥600,000、Indirect Cost: ¥180,000)
Keywordsメディア認識 / パターン認識 / 情報セキュリティ / サーバ・クライアント / 認識器クローン / プライバシー保護 / Model Inversion Attack / クライアント・サーバ / 視覚メディア処理
Outline of Final Research Achievements

Client-server-based media recognition services, where client users send a media data to the recognition server while the server recognizes it and returns the result, have several risks for leaking sensitive information such as the recognition results, the server's recognition model, its training data, and so on. In this research project, we analyzed how much these risks are urgent and proposed some techniques to avoid or defend against them. The outcomes of this research project mainly include (i) media recognition framework where the recognition results are not disclosed to the server but correctly conveyed to the user, (ii) techniques to prevent and detect unauthorized clones of the server's recognition model, which we call "cloned recognizers", and (iii) techniques to estimate and regenerate a training data of a media recognition model only from the model itself.

Academic Significance and Societal Importance of the Research Achievements

AI技術の普及によりサーバ・クライアント型メディア認識サービスは既に現実のものとなりつつあり,今後の更なる発展が予想される中で,当該サービスを安心安全に運用・利用できないという事態になれば,大きな社会不安を引き起こす可能性が高い.本研究の成果は,そのリスクを低減するとともに,今後も継続して対処法の研究開発が求められることを示唆するものであり,安心安全なサービスの実現に大きく貢献し得る.また,学術的には,本研究の成果によりメディア認識分野・AI分野と情報セキュリティ分野を融合した新たな研究領域が創出される潜在性を持つ.他形態のメディア認識に対しても同様の研究を行う余地は大きく,極めて意義深い.

Report

(5 results)
  • 2020 Annual Research Report   Final Research Report ( PDF )
  • 2019 Research-status Report
  • 2018 Research-status Report
  • 2017 Research-status Report
  • Research Products

    (14 results)

All 2021 2020 2019 2018 Other

All Journal Article (5 results) (of which Peer Reviewed: 3 results,  Open Access: 2 results) Presentation (8 results) (of which Int'l Joint Research: 2 results,  Invited: 1 results) Remarks (1 results)

  • [Journal Article] Model inversion attack: analysis under gray-box scenario on deep learning based face recognition system2021

    • Author(s)
      Mahdi Khosravy, Kazuaki Nakamura, Yuki Hirose, Naoko Nitta, and Noboru Babaguchi
    • Journal Title

      KSII Transactions on Internet and Information Systems

      Volume: 15 Issue: 3 Pages: 1100-1118

    • DOI

      10.3837/tiis.2021.03.015

    • Related Report
      2020 Annual Research Report
    • Peer Reviewed / Open Access
  • [Journal Article] 画像認識サービスの悪用とその対処法に関する基礎検討2021

    • Author(s)
      中村 和晃, 新田 直子, 馬場口 登
    • Journal Title

      画像ラボ

      Volume: 32 Pages: 27-38

    • Related Report
      2020 Annual Research Report
  • [Journal Article] Investigation of Methods for Defending against Recognizer Clones2019

    • Author(s)
      中村和晃,新田直子,馬場口登
    • Journal Title

      Medical Imaging Technology

      Volume: 37 Issue: 4 Pages: 188-193

    • DOI

      10.11409/mit.37.188

    • NAID

      130007720103

    • ISSN
      0288-450X, 2185-3193
    • Year and Date
      2019-09-25
    • Related Report
      2019 Research-status Report
    • Peer Reviewed
  • [Journal Article] 内心プライバシー情報の流出を防ぐ画像認識フレームワークの開発2019

    • Author(s)
      中村和晃,新田直子,馬場口登
    • Journal Title

      画像ラボ

      Volume: Vol.30, No.6 Pages: 12-19

    • Related Report
      2019 Research-status Report
  • [Journal Article] Encryption-Free Framework of Privacy-Preserving Image Recognition for Photo-Based Information Services2019

    • Author(s)
      Nakamura Kazuaki、Nitta Naoko、Babaguchi Noboru
    • Journal Title

      IEEE Transactions on Information Forensics and Security

      Volume: 14 Issue: 5 Pages: 1264-1279

    • DOI

      10.1109/tifs.2018.2876752

    • Related Report
      2018 Research-status Report
    • Peer Reviewed / Open Access
  • [Presentation] 構造未知の画像認識器に対するModel Inversion Attackの検討2021

    • Author(s)
      吉村駿佑, 中村和晃, 新田直子, 馬場口登
    • Organizer
      電子情報通信学会2021年総合大会
    • Related Report
      2020 Annual Research Report
  • [Presentation] Detection of Cloned Recognizers: A Defending Method against Recognizer Cloning Attack2020

    • Author(s)
      Yuto Mori, Kazuaki Nakamura, Naoko Nitta, and Noboru Babaguchi
    • Organizer
      12th Asia-Pacific Signal and Information Processing Association Annual Summit and Conference (APSIPA ASC 2020)
    • Related Report
      2020 Annual Research Report
    • Int'l Joint Research
  • [Presentation] Deep Face Recognizer Privacy Attack: Model Inversion Initialization by a Deep Generative Adversarial Data Space Discriminator2020

    • Author(s)
      Mahdi Khosravy, Kazuaki Nakamura, Naoko Nitta, and Noboru Babaguchi
    • Organizer
      12th Asia-Pacific Signal and Information Processing Association Annual Summit and Conference (APSIPA ASC 2020)
    • Related Report
      2020 Annual Research Report
    • Int'l Joint Research
  • [Presentation] 画像認識モデルからの情報流出の可能性とその対処法に関する検討2020

    • Author(s)
      中村和晃, 森勇登, 廣瀬雄基, Mahdi Khosravy, 新田直子, 馬場口登
    • Organizer
      第26回画像センシングシンポジウム(SSII)
    • Related Report
      2020 Annual Research Report
    • Invited
  • [Presentation] 画像認識器に対するクローン訓練攻撃とその防御法に関する考察2020

    • Author(s)
      金原祥太,中村和晃,新田直子,馬場口登
    • Organizer
      電子情報通信学会パターン認識・メディア理解研究会
    • Related Report
      2019 Research-status Report
  • [Presentation] 画像生成ネットワークを用いたModel Inversion Attackの提案2020

    • Author(s)
      河津勘介,廣瀬雄基,中村和晃,新田直子,馬場口登
    • Organizer
      電子情報通信学会2020年総合大会
    • Related Report
      2019 Research-status Report
  • [Presentation] メディア認識サービスにおけるクローン認識器検知手法の検討2019

    • Author(s)
      森勇登,中村和晃,新田直子,馬場口登
    • Organizer
      電子情報通信学会2019年総合大会
    • Related Report
      2018 Research-status Report
  • [Presentation] クライアント・サーバ型メディア認識における模倣認識器構築防止手法の検討2018

    • Author(s)
      金原祥太,中村和晃,新田直子,馬場口登
    • Organizer
      電子情報通信学会2018年総合大会
    • Related Report
      2017 Research-status Report
  • [Remarks] 画像認識に伴う内心プライバシー情報の漏洩をブロックする仕組みを世界初開発

    • URL

      https://www.eng.osaka-u.ac.jp/ja/dat/news/1541393657_1.pdf

    • Related Report
      2018 Research-status Report

URL: 

Published: 2017-04-28   Modified: 2022-01-27  

Information User Guide FAQ News Terms of Use Attribution of KAKENHI

Powered by NII kakenhi