中文
相关论文

相关论文: Distillation-Resistant Watermarking for Model Prot…

200 篇论文

Federated Learning is vulnerable to adversarial manipulation, where malicious clients can inject poisoned updates to influence the global model's behavior. While existing defense mechanisms have made notable progress, they fail to protect…

机器学习 · 计算机科学 2025-04-29 Georgios Syros , Anshuman Suri , Farinaz Koushanfar , Cristina Nita-Rotaru , Alina Oprea

To support various applications, a prevalent and efficient approach for business owners is leveraging their valuable datasets to fine-tune a pre-trained LLM through the API provided by LLM owners or cloud servers. However, this process…

密码学与安全 · 计算机科学 2024-06-06 Shen Li , Liuyi Yao , Jinyang Gao , Lan Zhang , Yaliang Li

Pretrained Deep Neural Networks (DNNs), developed from extensive datasets to integrate multifaceted knowledge, are increasingly recognized as valuable intellectual property (IP). To safeguard these models against IP infringement, strategies…

机器学习 · 计算机科学 2024-10-11 Ruyi Ding , Lili Su , Aidong Adam Ding , Yunsi Fei

Deep learning (DL) models for natural language processing (NLP) tasks often handle private data, demanding protection against breaches and disclosures. Data protection laws, such as the European Union's General Data Protection Regulation…

计算与语言 · 计算机科学 2022-05-23 Samuel Sousa , Roman Kern

With the wide application of deep neural networks, it is important to verify a host's possession over a deep neural network model and protect the model. To meet this goal, various mechanisms have been designed. By embedding extra…

密码学与安全 · 计算机科学 2021-07-19 Fang-Qi Li , Shi-Lin Wang , Alan Wee-Chung Liew

DNN-based watermarking methods are rapidly developing and delivering impressive performances. Recent advances achieve resolution-agnostic image watermarking by reducing the variant resolution watermarking problem to a fixed resolution…

密码学与安全 · 计算机科学 2024-09-04 Yuchen Wang , Xingyu Zhu , Guanhui Ye , Shiyao Zhang , Xuetao Wei

The proliferation of Deep Neural Networks (DNN) in commercial applications is expanding rapidly. Simultaneously, the increasing complexity and cost of training DNN models have intensified the urgency surrounding the protection of…

密码学与安全 · 计算机科学 2023-12-12 Junlong Mao , Huiyi Tang , Yi Zhang , Fengxia Liu , Zhiyong Zheng , Shanxiang Lyu

With the explosive growth of internet technology, easy transfer of digital multimedia is feasible. However, this kind of convenience with which authorized users can access information, turns out to be a mixed blessing due to information…

密码学与安全 · 计算机科学 2012-05-22 Saraju P. Mohanty

As valuable digital assets, deep neural networks necessitate robust ownership protection, positioning neural network watermarking (NNW) as a promising solution. Among various NNW approaches, weight-based methods are favored for their…

密码学与安全 · 计算机科学 2025-11-27 Yuan Yao , Jin Song , Jian Jin

Latent Diffusion Models (LDMs) enable a wide range of applications but raise ethical concerns regarding illegal utilization. Adding watermarks to generative model outputs is a vital technique employed for copyright tracking and mitigating…

密码学与安全 · 计算机科学 2025-06-02 Liangqi Lei , Keke Gai , Jing Yu , Liehuang Zhu

A deep neural network (DNN) classifier represents a model owner's intellectual property as training a DNN classifier often requires lots of resource. Watermarking was recently proposed to protect the intellectual property of DNN…

密码学与安全 · 计算机科学 2020-11-03 Xiaoyu Cao , Jinyuan Jia , Neil Zhenqiang Gong

Robust reversible watermarking (RRW) enables copyright protection for images while overcoming the limitation of distortion introduced by watermark itself. Current RRW schemes typically employ a two-stage framework, which fails to achieve…

密码学与安全 · 计算机科学 2026-02-24 Zikai Xu , Bin Liu , Weihai Li , Lijunxian Zhang , Nenghai Yu

Model extraction attacks (MEAs) on large language models (LLMs) have received increasing attention in recent research. However, existing attack methods typically adapt the extraction strategies originally developed for deep neural networks…

密码学与安全 · 计算机科学 2025-05-20 Zi Liang , Qingqing Ye , Yanyun Wang , Sen Zhang , Yaxin Xiao , Ronghua Li , Jianliang Xu , Haibo Hu

In order to protect the intellectual property (IP) of deep neural networks (DNNs), many existing DNN watermarking techniques either embed watermarks directly into the DNN parameters or insert backdoor watermarks by fine-tuning the DNN…

密码学与安全 · 计算机科学 2021-10-19 Xiangyu Zhao , Yinzhe Yao , Hanzhou Wu , Xinpeng Zhang

Model stealing attacks have become a serious concern for deep learning models, where an attacker can steal a trained model by querying its black-box API. This can lead to intellectual property theft and other security and privacy risks. The…

机器学习 · 计算机科学 2023-09-12 Kacem Khaled , Mouna Dhaouadi , Felipe Gohring de Magalhães , Gabriela Nicolescu

Neural networks provide state-of-the-art results for most machine learning tasks. Unfortunately, neural networks are vulnerable to adversarial examples: given an input $x$ and any target classification $t$, it is possible to find a new…

密码学与安全 · 计算机科学 2017-03-23 Nicholas Carlini , David Wagner

Nowadays, due to the breakthrough in natural language generation (NLG), including machine translation, document summarization, image captioning, etc NLG models have been encapsulated in cloud APIs to serve over half a billion people…

密码学与安全 · 计算机科学 2021-12-07 Xuanli He , Qiongkai Xu , Lingjuan Lyu , Fangzhao Wu , Chenguang Wang

Invisible image watermarking is essential for image copyright protection. Compared to RGB images, RAW format images use a higher dynamic range to capture the radiometric characteristics of the camera sensor, providing greater flexibility in…

图像与视频处理 · 电气工程与系统科学 2023-07-31 Kang Fu , Xiaohong Liu , Jun Jia , Zicheng Zhang , Yicong Peng , Jia Wang , Guangtao Zhai

Digital image watermarking is the process of embedding and extracting watermark covertly on a carrier image. Incorporating deep learning networks with image watermarking has attracted increasing attention during recent years. However,…

多媒体 · 计算机科学 2020-07-07 Xin Zhong , Frank Y. Shih

In this paper, we initiate the study of \emph{multi-designated detector watermarking (MDDW)} for large language models (LLMs). This technique allows model providers to generate watermarked outputs from LLMs with two key properties: (i) only…

密码学与安全 · 计算机科学 2024-10-02 Zhengan Huang , Gongxian Zeng , Xin Mu , Yu Wang , Yue Yu