Robust Watermarking for Neural Network Models Using Residual Network

被引:1
|
作者
Wang, Lecong [1 ]
Wang, Zichi [2 ]
Li, Xinran [1 ]
Qin, Chuan [1 ]
机构
[1] Univ Shanghai Sci & Technol, Sch Opt Elect & Comp Engn, Shanghai, Peoples R China
[2] Shanghai Univ, Sch Commun & Informat Engn, Shanghai, Peoples R China
基金
中国国家自然科学基金; 上海市自然科学基金;
关键词
Digital watermarking; robustness; neural networks; residual block;
D O I
10.1109/MMSP55362.2022.9949601
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
The training process of a neural network model requires plenty of costs, and so the intellectual property of neural network models should be protected. To this end, we propose a robust watermarking scheme for neural network models in this paper. In our scheme, an independent network is specially designed to help embedding watermarks into a given host network, and also be used for watermark extraction. The independent network is designed based on the residual structure which is sensitive to the parameter changes of the host network and conducive to finding suitable embedding locations. In addition, some residual blocks are randomly discarded during watermark embedding, which can increase the robustness against popular model attacks. Experimental results show that our scheme achieves satisfactory watermark verification performance without decreasing the original performance of the host network, even if the host network has been maliciously tampered.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] Robust image watermarking using RBF neural network
    Lu, Wei
    Lu, Hongtao
    Chung, Fu-Lai
    ADVANCES IN NEURAL NETWORKS - ISNN 2006, PT 2, PROCEEDINGS, 2006, 3972 : 623 - 628
  • [2] Customized and Robust Deep Neural Network Watermarking
    Chien, Tzu-Yun
    Shen, Chih-Ya
    PROCEEDINGS OF THE 17TH ACM INTERNATIONAL CONFERENCE ON WEB SEARCH AND DATA MINING, WSDM 2024, 2024, : 134 - 142
  • [3] Robust Watermarking of Neural Network with Exponential Weighting
    Namba, Ryota
    Sakuma, Jun
    PROCEEDINGS OF THE 2019 ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (ASIACCS '19), 2019, : 228 - 240
  • [4] A robust document image watermarking scheme using deep neural network
    Sulong Ge
    Zhihua Xia
    Jianwei Fei
    Yao Tong
    Jian Weng
    Ming Li
    Multimedia Tools and Applications, 2023, 82 : 38589 - 38612
  • [5] Subsampling-based robust watermarking using neural network detector
    Lu, W
    Lu, HT
    Chung, FL
    ADVANCES IN NEURAL NETWORKS - ISNN 2005, PT 2, PROCEEDINGS, 2005, 3497 : 801 - 806
  • [6] A robust document image watermarking scheme using deep neural network
    Ge, Sulong
    Xia, Zhihua
    Fei, Jianwei
    Tong, Yao
    Weng, Jian
    Li, Ming
    MULTIMEDIA TOOLS AND APPLICATIONS, 2023, 82 (25) : 38589 - 38612
  • [7] Robust Emotion Classification using Neural Network Models
    Salari, Soorena
    Ansarian, Amin
    Atrianfar, Hajar
    2018 6TH IRANIAN JOINT CONGRESS ON FUZZY AND INTELLIGENT SYSTEMS (CFIS), 2018, : 190 - 194
  • [8] A neural-network-based robust watermarking scheme
    Chang, CY
    Su, SJ
    INTERNATIONAL CONFERENCE ON SYSTEMS, MAN AND CYBERNETICS, VOL 1-4, PROCEEDINGS, 2005, : 2482 - 2487
  • [9] Robust Digital Image Watermarking using DWT, DCT and Probabilistic Neural Network
    Kuri, Suresh
    Kulkarni, Gururaj
    2017 INTERNATIONAL CONFERENCE ON ELECTRICAL, ELECTRONICS, COMMUNICATION, COMPUTER, AND OPTIMIZATION TECHNIQUES (ICEECCOT), 2017, : 582 - 586
  • [10] A robust image watermarking scheme using Arnold transform and BP neural network
    Sun, Lin
    Xu, Jiucheng
    Liu, Shangwang
    Zhang, Shiguang
    Li, Yuan
    Shen, Chang'an
    NEURAL COMPUTING & APPLICATIONS, 2018, 30 (08): : 2425 - 2440