Facial recognition CEO: software is not ready for use by law enforcement
techcrunch.com
techcrunch.com
As the article says, there are huge concerns about how such tools might be misused, whether legally or not. So the title might more accurately stated not as 'facial recognition software is not ready for law enforcement', but that 'law enforcement is not ready for facial recognition software'. I'm fairly sure there are countries out there where citizens do not lie awake at night in fear of their government, and where such technologies might be responsibly deployed as a tool in law enforcement.
I suppose it is horrible, but it's a very common situation.
You don't think there's _any_ conceivable way that law enforcement could utilize facial recognition tech without negative consequences? Not even, say, aiding manual review of security camera footage as part of an investigation into a preexisting suspect?
Absolutely. Deploy the cameras around town and train it using pictures of their officers to catch misbehavior.
Instead of police being able to scan one face at a time as they walk their beats looking for suspects, an automated system could scan everyone in view and then alert that an suspect has been identified with xx% accuracy.
Every week on next door someone posts a video still of a vagrant or thief etc. either from a broken car window, hit and run, lurker, etc. Automation would help if the perps. We, as a society, might want to adjust the dials on punishment, given the efficiency, but we shouldn’t give up the chance to minimize these crimes when reasonable.
"We find that these datasets are overwhelmingly composed of lighter-skinned subjects (79.6% for IJB-A and 86.2% for Adience) and introduce a new facial analysis dataset which is balanced by gender and skin type. We evaluate 3 commercial gender classification systems using our dataset and show that darker-skinned females are the most misclassified group (with error rates of up to 34.7%). The maximum error rate for lighter-skinned males is 0.8%.
It’s like saying, well, since we can’t successfully prosecute big bankers, well also ignore smaller fry bankers who are sloppier cuz it’s not fair to them.
In the end everyone but the criminals benefit. Eventually one hopes the system is well enough trained so it can be deployed for all skin tones.
I have zero doubt that the second such a thing is deployed, they are going to be cataloging everyone's faces permanently then moving to track people next.
The false positive rate on fingerprints and the lack of understanding in DNA statistics further indicate that the enforcement/legal system has a very poor understanding of even basic statistics.
I don't suggest that anyone is looking to simply lock people up because of a 'face match' - rather flag an individual as 'possibly being someone' in which case this can be very useful information.
If for example they use it at border checks to 'flag' individuals, then a border agent can manually intervene, check the person's info etc..
So maybe that this not even possible to any degree of validity today, in which case 'the tech is not ready' ... but if the tech works to any measurable degree of reliability then it's possible to be put to use to reasonable effect - like anything (guns, tasers, DNA matching, fingerprints) - it has to be used properly.
Fingerprints seem to be a bonafide way to identify someone and can be used as evidence, it'd seem that facial recognition can't be used as evidence, but likely for other things.
Unfortunately, cops are not technologists. They're not mathematicians. They don't understand the dangers of applying a solution that is right 99% of the time to a population of 300 million people, and if each person averaged appearing on just one camera per day, that would mean three million false identifications per day.
How many real criminals are they really looking for on a daily basis, and which would warrant such a dragnet measure?
They can't handle a false positive rate like that. They can't be running around like chickens with their heads cut off, trying to verify the millions of bogus hits against the tiny fraction of potential valid ones.
It's the same problem that the TSA has, only these are real police with real guns. And real people are going to get killed because they get mis-identified, as opposed to just inconvenienced and pulled aside for extra scanning.
Do you really want to make the cops as bad as the TSA?
Moreover, though cops can bend and break rules, they're not idiots.
For example, at border crossing, a 'fact match' with a name simply could flag someone for an interview, and a background check to see if it's a certain person.
An arrest has to be made on some kind of reasonable grounds if a 'face match' is not considered reasonable grounds, border guards (and cops for that matter) are quite aware of that and know they can't make the arrest on that basis alone.
At least, that's the way they operate.
Now, if you take them to court, maybe you can get a reversal of their action against you. But you have to be a citizen or legal resident to do that, and you still have to suffer the consequences in the meanwhile.
This was true of many countries where it's no longer the case. Once a technology is available to a benevolent government, it remains available once that benevolence ends. It's wise to do what can be done to prevent and hinder misuse before it's too late.
It doesn't make sense to surveil regular people, but it makes a heck of a lot of sense to surveil public officials while they're doing their jobs. We went from "the police are going to sit back and watch cameras of everybody and show up at our doors to arrest us!" to "Damn cop department won't release his body cam footage because they claim it was out of battery power!"
I think facial recognition is going to follow that same sort of acceptance arc. Nobody except China is going to have the stones to build a bureaucracy around deploying it and we're going to want it to solve a way more pernicious problem once we find a killer app.
If you're really worried about government malfeasance, all you have to do is to actually read some of the Wikileaks dumps and go looking for smoking guns. Everybody else already did that and other than the NSA programs, nobody's found anything really interesting.
You're kidding, right?
This is biased in selection, but I would call Wikileaks releases anything other than uninteresting. http://www.mostdamagingwikileaks.com
Okay.
Homeland Security’s New Database to Include Faces, DNA, and Relationships - https://www.eff.org/deeplinks/2018/06/hart-homeland-security...
http://www.theverge.com/2017/4/18/15332742/us-border-biometr...
https://www.theguardian.com/technology/2017/mar/27/us-facial...
http://jacksonville.com/public-safety/2016-11-11/how-accused...
Bonus, from the fascism side (the real definition, government and corporate cooperation): http://massprivatei.blogspot.com/2016/07/10k-google-wi-fi-ki...
And from the speculative side: https://www.bloomberg.com/features/2016-baltimore-secret-sur...
Just saw an article I can't find any longer about China using 10-sensor cameras to do facial recognition at a city-level. Built by a university in the US....things do not look as bright as you're painting them, I'm afraid.
In order to get me interested in a new Threat To American Democracy and Freedom, you need to show that it's actually novel and unprecedented. And then it's only as interesting as its potential to actually scale. Remember red-light cameras? In Georgia they had to take them out because after the public bitched, they had to increase the length of the yellow light and the company running them couldn't make ends meet.
Without economic incentives, the political will to keep it going, and a novel approach, it's really hard to get interested in outrage or fear over technological dystopia.
>America has a long history of facilitating other nations' experiments in tyranny. Like, a really really long one. Considering how long America has been around say compared to Europe that's quite a claim.
I think this might have been it:
https://www.amazon.com/Friendly-Dictators-Americas-Embarrass...
However, I do not get the "companies unite against selling X to government" approach. It is, to me, both misguided (restricting gov't from buying something private companies can buy will simply lead to relabeling or minor redesigns of the same technology) and naive (to work, it needs a very broad agreement which IMO will not get enough traction).
An approach that could work better is to inform, not restrict: make sure that all imagery and videos used or considered for use police are public unless there is a short term, limited exception. And make police wear cameras whenever they wear uniforms and make those video streams public, too (maybe with a few hour lag in case there is a tactical need). My 2c.
For whatever values of they, it, and someone else suit the situation.
There is no coherent we to do the refusing.
What are some historical examples in which industry coalitions of unprovoked top private executives refused government contracts in the name of the civil rights of their fellow citizens?
Especially disturbing is that these systems seem to have a much higher rate of misidentifying minorities.
[1] https://www.npr.org/2018/05/12/610632088/what-artificial-int...
Since, instead of support for this statement, the CEO of this 'company' decided that shaming his reader would be more effective, I'll give you his support. It's an article that he wrote based on studies that show there are significantly higher error rates in gender and race classification in some algorithms, without ever showing why this even matters within the context of how facial recognition algorithms are or would be used by law enforcement. Nor did he show that the specific algorithms being proposed have these biases, and not just some other ones. Nor did he show that race classification is even a result that law enforcement runs.
[1] https://www.kairos.com/blog/face-off-confronting-bias-in-fac...
NB that being arrested once can hinder someone from getting Visas or jobs in the future and can result in social exclusion.
>Arrest records are generally open to the public unless they concern an active or ongoing investigation.[2]
>Since the arrest record is public, anyone can access the information by going to the jurisdiction’s government website. Also, anyone can obtain the arrest record by going to the county clerk’s office in person.[3]
[1]https://www.hg.org/article.asp?id=36914
[2]https://www.rcfp.org/private-eyes/arrest-records
[3]https://www.legalmatch.com/law-library/article/what-is-a-pub...
https://sunlightfoundation.com/2016/02/01/the-perils-of-pers...
Even if the courts do not convict in the end, a lot of damage might already been done.
The pseudo-scientific hair analysis stuff performed by the FBI showed the dangers of "science" and "tech"[1]. People went to real prison because investigators, judges and juries overestimated the flaky results the sometimes outright negligent pseudo-science produced. I imagine some people were shoot during arrests based on that evidence, died in prison or committed suicide.
There also was the Phantom of Heilbronn here in Germany, where police looked for a master criminal and serial killer for ages (2001 to 2009), but it turned out the materials they used to do DNA swaps at crime scenes were contaminated at the factory by a worker[2]. For years nobody of the many involved in the investigations even considered questioning the DNA results.
So even if the science and tech is sound (which it really isn't in case of facial recognition yet, if ever), wrong application, common mistakes, and misunderstanding the results are real problems.
[1] https://www.fbi.gov/news/pressrel/press-releases/fbi-testimo...
I think there are a couple reasons to be hopeful about court systems taking a more nuanced view of this technology: 1) it cannot be denied that it is imprecise, and 2) it's pretty easy for laity to understand (at least in principle) how it works. DNA evidence is effectively magic by comparison.
I actually think the imprecision is an asset for this technology. I would much rather this tool be 95% reliable than 99.99% reliable. The former inherently requires law enforcement to work harder; the later tempts "oh the machine said so it must be right".
Like this guy, who spent 23 years in prison because FBI told the jury some hair they found was his... while it was actually not even human but dog hair.
>An FBI analyst testified that one of the hairs from the stocking mask linked Tribble to the crime and “matched in all microscopic characteristics.” >Tribble’s attorneys were successful in obtaining mitochondrial DNA testing on the 13 hairs recovered from the stocking mask. None of the hairs—including the alleged match—implicated Tribble or Wright. Further, the analysis revealed FBI analysts’ errors, including mistakenly calling a dog hair human. https://www.innocenceproject.org/cases/santae-tribble/
As for face recognition, I wonder if you're correct. I'd expect a lot of people think it's very precise. Well, at least the "My Sibling can unlock my iPhone with their face" debacle might have generated some press to combat that misconception.
I noticed that I forgot the details a bit. It's worse if you read above links. Anyway, you really do not want to become a suspect!
Well, choosing to respond to a claim that wasn't asserted isn't a valid argument against the original assertion.
> and from there it is valid to discuss whether it might happen again.
This again is working at 'anecdote scale'. Unless you can show that the costs of these anecdotes are anywhere near the collective benefits, then it's worthless. Keep in mind, it's equally worthless to assert there actually are benefits in this system without support, but that's why I'm not asserting that. I'm just saying an isolated argument on one side or the other, especially when it just a fucking anecdote, is functionally meaningless.
And if it happens regularly - a man who looks like Bin Laden today will look just as much like him tomorrow - that would be a major inconvenience.
If you think government departments and the tech companies they outsource to are too competent to repeatedly hassle innocent people due to mistaken identities, just look at the no fly list. [1]
[1] https://en.wikipedia.org/wiki/No_Fly_List#False_positives
There is a quote but I forget from whom that basically says "if you follow anyone for 30 minutes, you'll witness them commit a crime". Although it is likely to be a traffic violation, that doesn't change the fact that constant surveillance would "catch" you soon enough.
When police can accurately determine who they're looking for based on their appearance and can quickly determine whether the person they're bothering is that person they are more limited in how they can harass people in the present. If no records are kept big brother is more limited in his capacity to harass people in the future.
Most people don't have any warrants out, haven't recently been recorded on a security camera robbing a liquor store, etc. Being able to ID people reliably without stopping them is the last thing law enforcement wants (let's ignore the three letter agencies for a minute here) because it makes it much harder to stop people for being "suspicious" or "looking like a drug dealer" (license plates provide similar protection for cars, they can't just stop every silver Camry because a silver Camry was once stolen).
License plates and cell phones almost map 1:1 to your identity. Nobody has a problem with license plates or phones as long as they're not used to stalk people at scale. It's the creation of the data-set that can be used to stalk people. We need to stop creating these data sets in order to prevent the stalking at scale (which is the real issue here, even the article says that).
Imagine a world where the speed limits were followed like normal laws (i.e. they were reasonable enough that most people didn't have to go out of their way to follow them). The police in that world would hate radar guns because they're accurate (and can be audited for accuracy) Big brother would hate them because they don't record metadata for each reading. Facial recognition, ALPRs, need to work like that. History has proven time and again that you can't keep technology in the closet. Better it be used on our terms than theirs.
We're going to have to confront the data retention and government/commercial stalking/surveillance issue eventually. Getting angry over APLRs, stingrays or facial recognition is just playing whack-a-mole. I'm still gonna play whack-a-mole until we solve the big problem though.
Edit: If people disagree I'd love to hear why. This isn't Reddit.
Just type in 'alexa google recording' and see the news of them being used.
Aside: Everyone I've described the securus scandal to has a problem with phones.
"Fortunately, the matter of algorithmic ethnic bias, or “the coded gaze” as Buolamwini calls it, can be corrected with a lot of cooperative effort and patience while the AI learns. If you think of machine learning in terms of teaching a child, then consider that you cannot reasonably expect a child to recognize something or someone it has never or seldom seen. Similarly, in the case of algorithmic ethnic bias, the system can only be as diverse in its recognition of ethnicities as the catalogue of photos on which it has been trained."
As this is extremely concerning. I had some questions:
Are the training sets for company's selling facial recognition technology considered proprietary and therefore not verifiable as free from bias?
Is it not possible to develop a standard or criteria that a company's training set has sufficient distribution to be free of racial bias? Is this just not possible for some technical reason?
What is the difference? Bias towards a color? What are you saying?
I would also not blame the math but the implementation aka the coding/modeling of the problem.
You can develop your own face recognition software providing a good dataset (i.e CelebA, LFW or the fed dataset if you have access to) using our embedded computer vision library[1] that we just released earlier this month or using the PixLab /facecompare HTTP endpoint (https://pixlab.io/cmd?id=facecompare).