A survey of Deep Neural Network watermarking techniques

被引:77
|
作者
Li, Yue [1 ]
Wang, Hongxia [2 ]
Barni, Mauro [3 ]
机构
[1] Southwest Jiaotong Univ, Sch Informat Sci & Technol, Chengdu 611756, Peoples R China
[2] Sichuan Univ, Sch Cyber Sci & Engn, Chengdu 610065, Peoples R China
[3] Univ Siena, Dept Informat Engn & Math, I-53100 Siena, Italy
基金
中国国家自然科学基金;
关键词
Intellectual property protection; Deep Neural Networks; Watermarking; White box vs black box watermarking; Watermarking and DNN backdoors; IMAGE WATERMARKING; AUDIO WATERMARKING; DIGITAL WATERMARKING; ROBUST; SYSTEM;
D O I
10.1016/j.neucom.2021.07.051
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Protecting the Intellectual Property Rights (IPR) associated to Deep Neural Networks (DNNs) is a pressing need pushed by the high costs required to train such networks and by the importance that DNNs are gaining in our society. Following its use for Multimedia (MM) IPR protection, digital watermarking has recently been considered as a mean to protect the IPR of DNNs. While DNN watermarking inherits some basic concepts and methods from MM watermarking, there are significant differences between the two application areas, thus calling for the adaptation of media watermarking techniques to the DNN scenario and the development of completely new methods. In this paper, we overview the most recent advances in DNN watermarking, by paying attention to cast them into the bulk of watermarking theory developed during the last two decades, while at the same time highlighting the new challenges and opportunities characterising DNN watermarking. Rather than trying to present a comprehensive description of all the methods proposed so far, we introduce a new taxonomy of DNN watermarking and present a few exemplary methods belonging to each class. We hope that this paper will inspire new research in this exciting area and will help researchers to focus on the most innovative and challenging problems in the field. (c) 2021 Elsevier B.V. All rights reserved.
引用
收藏
页码:171 / 193
页数:23
相关论文
共 50 条
  • [21] A robust document image watermarking scheme using deep neural network
    Sulong Ge
    Zhihua Xia
    Jianwei Fei
    Yao Tong
    Jian Weng
    Ming Li
    Multimedia Tools and Applications, 2023, 82 : 38589 - 38612
  • [22] A fast and efficient image watermarking scheme based on Deep Neural Network
    Mellimi, Sandeep
    Rajput, Vishal
    Ansari, Irshad Ahmad
    Ahn, Chang Wook
    PATTERN RECOGNITION LETTERS, 2021, 151 (151) : 222 - 228
  • [23] WATERMARKING PROTOCOL FOR DEEP NEURAL NETWORK OWNERSHIP REGULATION IN FEDERATED LEARNING
    Li, Fang-Qi
    Wang, Shi-Lin
    Liew, Alan Wee-Chung
    2022 IEEE INTERNATIONAL CONFERENCE ON MULTIMEDIA AND EXPO WORKSHOPS (IEEE ICMEW 2022), 2022,
  • [24] Structural Watermarking to Deep Neural Networks via Network Channel Pruning
    Zhao, Xiangyu
    Yao, Yinzhe
    Wu, Hanzhou
    Zhang, Xinpeng
    2021 IEEE INTERNATIONAL WORKSHOP ON INFORMATION FORENSICS AND SECURITY (WIFS), 2021, : 14 - 19
  • [25] A robust document image watermarking scheme using deep neural network
    Ge, Sulong
    Xia, Zhihua
    Fei, Jianwei
    Tong, Yao
    Weng, Jian
    Li, Ming
    MULTIMEDIA TOOLS AND APPLICATIONS, 2023, 82 (25) : 38589 - 38612
  • [26] Network Flow Watermarking: A Survey
    Iacovazzi, Alfonso
    Elovici, Yuval
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2017, 19 (01): : 512 - 530
  • [27] A Survey on Geometric Invariant Watermarking Techniques
    Gangadhar, Y.
    Akula, V. S. Giridhar
    Reddy, P. Chenna
    2016 IEEE INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND COMPUTING RESEARCH, 2016, : 182 - 186
  • [28] A survey: Digital image watermarking techniques
    Parashar, Preeti, 1600, Science and Engineering Research Support Society (07):
  • [29] A survey of watermarking techniques applied to multimedia
    Lee, SJ
    Jung, SH
    ISIE 2001: IEEE INTERNATIONAL SYMPOSIUM ON INDUSTRIAL ELECTRONICS PROCEEDINGS, VOLS I-III, 2001, : 272 - 277
  • [30] A recent survey of reversible watermarking techniques
    Khan, Asifullah
    Siddiqa, Ayesha
    Munib, Summuyya
    Malik, Sana Ambreen
    INFORMATION SCIENCES, 2014, 279 : 251 - 272