Robust Face Recognition and Morphing Defense Through Hyperspherical Manifold Hardening

Abstract Modern face recognition systems are widely deployed in high-security environments, such as automated border control and mobile authentication. However, these systems remain vulnerable to two primary security threats: adaptive adversarial perturbations, where minor pixel modifications cause misidentification, and structural face morphing, where blended composite images deceive biometric scanners. In this paper, we address the limitations of traditional lightweight models that suffer from spatial manifold crowding and decision boundary collapse under multi-step attack pressures. We propose a unified defense framework that integrates Adversarial Geodesic Loss with Smooth Softplus Margin regularization on a high-capacity pre-trained IResNet-100 backbone. By forcing the network to dynamically defend against online Projected Gradient Descent trajectories during training, our approach reshapes the latent hypersphere without sacrificing feature separability. Empirical evaluations demonstrate that our hardened pipeline achieves an absolute zero-percent bypass rate against landmark-aligned Delaunay triangulation morphing and restricts white-box adaptive attack success, while maintaining a pristine one-hundred-percent verification true acceptance rate for genuine users. This study establishes a robust, scalable defense mechanism that satisfies strict transaction standards for high-security biometric deployments. Keywords—Biometric security, face recognition, face morphing attacks, adversarial robustness, hyperspherical embeddings, geodesic distance, deep learning defense.

Authors

Publication Details

Journal
Zenodo (CERN European Organization for Nuclear Research)
Published
2026-10-09
DOI
https://doi.org/10.5281/zenodo.23261655
Primary Topic
Adversarial Robustness in Machine Learning
Type
article
Field-Weighted Citation Impact
0.00
Controls
|||
ALL TIME
JAN
FEB
MAR
APR
MAY
JUN
JUL
AUG
SEP
OCT
article

Robust Face Recognition and Morphing Defense Through Hyperspherical Manifold Hardening

Ishmat Fatima T.P.
Zenodo (CERN European Organization for Nuclear Research)
Adversarial Robustness in Machine Learning
article

Robust Face Recognition and Morphing Defense Through Hyperspherical Manifold Hardening

Ishmat Fatima T.P.
article en

Abstract

Abstract Modern face recognition systems are widely deployed in high-security environments, such as automated border control and mobile authentication. However, these systems remain vulnerable to two primary security threats: adaptive adversarial perturbations, where minor pixel modifications cause misidentification, and structural face morphing, where blended composite images deceive biometric scanners. In this paper, we address the limitations of traditional lightweight models that suffer from spatial manifold crowding and decision boundary collapse under multi-step attack pressures. We propose a unified defense framework that integrates Adversarial Geodesic Loss with Smooth Softplus Margin regularization on a high-capacity pre-trained IResNet-100 backbone. By forcing the network to dynamically defend against online Projected Gradient Descent trajectories during training, our approach reshapes the latent hypersphere without sacrificing feature separability. Empirical evaluations demonstrate that our hardened pipeline achieves an absolute zero-percent bypass rate against landmark-aligned Delaunay triangulation morphing and restricts white-box adaptive attack success, while maintaining a pristine one-hundred-percent verification true acceptance rate for genuine users. This study establishes a robust, scalable defense mechanism that satisfies strict transaction standards for high-security biometric deployments. Keywords—Biometric security, face recognition, face morphing attacks, adversarial robustness, hyperspherical embeddings, geodesic distance, deep learning defense.

Zenodo (CERN European Organization for Nuclear Research)
Openalex Percentile: Top 12%
Adversarial Robustness in Machine Learning
AI Navigator

Ask Laika to Summarize, Analyze, and Connect papers live on the map.

Summarize Papers & Methodologies

Extract key findings, datasets, and comparative methods across publications.

Benchmark Rankings & Visual Analytics

Rank top research institutions, authors, funders, topics, and journals by Field-Weighted Citation Impact (FWCI) and paper volume with instant charts.

Connect Distant Disciplines

Bridge topological clusters on the map to find hidden collaborative intersections.

Robust Face Recognition and Morphing Defense Through Hyperspherical Manifold Hardening — Ishmat Fatima T.P. · Zenodo (CERN European Organization for Nuclear Research) (2026) | TGRS Research Map | TGRS