中文
相关论文

相关论文: Cracking White-box DNN Watermarks via Invariant Ne…

200 篇论文

Training a high-performance deep neural network requires large amounts of data and computational resources. Protecting the intellectual property (IP) and commercial ownership of a deep model is challenging yet increasingly crucial. A major…

计算机视觉与模式识别 · 计算机科学 2024-03-13 Shuyang Yu , Junyuan Hong , Haobo Zhang , Haotao Wang , Zhangyang Wang , Jiayu Zhou

Deep learning has been achieving top performance in many tasks. Since training of a deep learning model requires a great deal of cost, we need to treat neural network models as valuable intellectual properties. One concern in such a…

密码学与安全 · 计算机科学 2019-01-21 Ryota Namba , Jun Sakuma

The training of Deep Neural Networks (DNN) is costly, thus DNN can be considered as the intellectual properties (IP) of model owners. To date, most of the existing protection works focus on verifying the ownership after the DNN model is…

密码学与安全 · 计算机科学 2023-05-26 Mingfu Xue , Shichang Sun , Can He , Yushu Zhang , Jian Wang , Weiqiang Liu

The commercialization of deep learning creates a compelling need for intellectual property (IP) protection. Deep neural network (DNN) watermarking has been proposed as a promising tool to help model owners prove ownership and fight piracy.…

机器学习 · 计算机科学 2021-02-16 Jia Guo , Miodrag Potkonjak

Deep learning has achieved tremendous success in numerous industrial applications. As training a good model often needs massive high-quality data and computation resources, the learned models often have significant business values. However,…

多媒体 · 计算机科学 2020-02-26 Jie Zhang , Dongdong Chen , Jing Liao , Han Fang , Weiming Zhang , Wenbo Zhou , Hao Cui , Nenghai Yu

A deep neural network (DNN) classifier represents a model owner's intellectual property as training a DNN classifier often requires lots of resource. Watermarking was recently proposed to protect the intellectual property of DNN…

密码学与安全 · 计算机科学 2020-11-03 Xiaoyu Cao , Jinyuan Jia , Neil Zhenqiang Gong

Protecting the Intellectual Property Rights (IPR) associated to Deep Neural Networks (DNNs) is a pressing need pushed by the high costs required to train such networks and the importance that DNNs are gaining in our society. Following its…

密码学与安全 · 计算机科学 2021-03-18 Yue Li , Hongxia Wang , Mauro Barni

Deep neural network (DNN) watermarking is a suitable method for protecting the ownership of deep learning (DL) models. It secretly embeds an identifier (watermark) within the model, which can be retrieved by the owner to prove ownership. In…

密码学与安全 · 计算机科学 2025-05-20 Reda Bellafqira , Gouenou Coatrieux

In this paper, we propose a novel DNN watermarking method that utilizes a learnable image transformation method with a secret key. The proposed method embeds a watermark pattern in a model by using learnable transformed images and allows us…

计算机视觉与模式识别 · 计算机科学 2021-04-12 MaungMaung AprilPyone , Hitoshi Kiya

Watermarking of deep neural networks (DNN) can enable their tracing once released by a data owner. In this paper, we generalize white-box watermarking algorithms for DNNs, where the data owner needs white-box access to the model to extract…

密码学与安全 · 计算机科学 2021-02-16 Tianhao Wang , Florian Kerschbaum

Invisible watermarks safeguard images' copyrights by embedding hidden messages only detectable by owners. They also prevent people from misusing images, especially those generated by AI models. We propose a family of regeneration attacks to…

With the widespread use of deep neural networks (DNNs) in many areas, more and more studies focus on protecting DNN models from intellectual property (IP) infringement. Many existing methods apply digital watermarking to protect the DNN…

密码学与安全 · 计算机科学 2022-07-11 Lina Lin , Hanzhou Wu

Watermarking has become a plausible candidate for ownership verification and intellectual property protection of deep neural networks. Regarding image classification neural networks, current watermarking schemes uniformly resort to backdoor…

密码学与安全 · 计算机科学 2022-04-12 Fangqi Li , Shilin Wang

Digital image watermarking seeks to protect the digital media information from unauthorized access, where the message is embedded into the digital image and extracted from it, even some noises or distortions are applied under various data…

计算机视觉与模式识别 · 计算机科学 2021-12-28 Hong-Bo Xu , Rong Wang , Jia Wei , Shao-Ping Lu

With the increasing application value of machine learning, the intellectual property (IP) rights of deep neural networks (DNN) are getting more and more attention. With our analysis, most of the existing DNN watermarking methods can resist…

密码学与安全 · 计算机科学 2022-08-12 Tzu-Yun Chien , Chih-Ya Shen

The rapid growth of transformer-based models increases the concerns about their integrity and ownership insurance. Watermarking addresses this issue by embedding a unique identifier into the model, while preserving its performance. However,…

密码学与安全 · 计算机科学 2024-01-19 Pierre Fernandez , Guillaume Couairon , Teddy Furon , Matthijs Douze

Watermarking deep neural network (DNN) models has attracted a great deal of attention and interest in recent years because of the increasing demand to protect the intellectual property of DNN models. Many practical algorithms have been…

密码学与安全 · 计算机科学 2025-01-14 Chaoyue Huang , Hanzhou Wu

As a common security tool, visible watermarking has been widely applied to protect copyrights of digital images. However, recent works have shown that visible watermarks can be removed by DNNs without damaging their host images. Such…

计算机视觉与模式识别 · 计算机科学 2022-07-19 Xinwei Liu , Jian Liu , Yang Bai , Jindong Gu , Tao Chen , Xiaojun Jia , Xiaochun Cao

DNNs shall be considered as the intellectual property (IP) of the model builder due to the impeding cost of designing/training a highly accurate model. Research attempts have been made to protect the authorship of the trained model and…

多媒体 · 计算机科学 2018-11-12 Huili Chen , Bita Darvish Rouhani , Xinwei Fan , Osman Cihan Kilinc , Farinaz Koushanfar

Watermarking combines an imperceptible change to an input image that will trigger a detector, to assert provenance and protect intellectual property. The literature has shown great interest in attacks on watermarking schemes: attackers are…

密码学与安全 · 计算机科学 2026-05-19 Maria Bulychev , Neil G. Marchant , Benjamin I. P. Rubinstein