Robust Watermarking for Neural Network Models Using Residual Network

被引:1
|
作者
Wang, Lecong [1 ]
Wang, Zichi [2 ]
Li, Xinran [1 ]
Qin, Chuan [1 ]
机构
[1] Univ Shanghai Sci & Technol, Sch Opt Elect & Comp Engn, Shanghai, Peoples R China
[2] Shanghai Univ, Sch Commun & Informat Engn, Shanghai, Peoples R China
基金
中国国家自然科学基金; 上海市自然科学基金;
关键词
Digital watermarking; robustness; neural networks; residual block;
D O I
10.1109/MMSP55362.2022.9949601
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
The training process of a neural network model requires plenty of costs, and so the intellectual property of neural network models should be protected. To this end, we propose a robust watermarking scheme for neural network models in this paper. In our scheme, an independent network is specially designed to help embedding watermarks into a given host network, and also be used for watermark extraction. The independent network is designed based on the residual structure which is sensitive to the parameter changes of the host network and conducive to finding suitable embedding locations. In addition, some residual blocks are randomly discarded during watermark embedding, which can increase the robustness against popular model attacks. Experimental results show that our scheme achieves satisfactory watermark verification performance without decreasing the original performance of the host network, even if the host network has been maliciously tampered.
引用
收藏
页数:6
相关论文
共 50 条
  • [41] A robust adaptive control using neural network
    Mekki, Hassen
    Chtourou, Mohamed
    Derbel, Nabil
    INTERNATIONAL JOURNAL OF MODELLING IDENTIFICATION AND CONTROL, 2007, 2 (01) : 58 - 65
  • [42] Robust blind beamforming using neural network
    He, Z
    Chen, Y
    IEE PROCEEDINGS-RADAR SONAR AND NAVIGATION, 2000, 147 (01) : 41 - 46
  • [43] A Survey of Watermarking Technique using Deep Neural Network Architecture
    Gupta, Megha
    Kishore, R. Rama
    2021 IEEE INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION, AND INTELLIGENT SYSTEMS (ICCCIS), 2021, : 630 - 635
  • [44] Image Watermarking with Grouped Convolution and Residual Network
    Hirose, Haruto
    Ikenouchi, Hayato
    Uto, Toshiyuki
    2024 INTERNATIONAL TECHNICAL CONFERENCE ON CIRCUITS/SYSTEMS, COMPUTERS, AND COMMUNICATIONS, ITC-CSCC 2024, 2024,
  • [45] An audio watermarking scheme with neural network
    Wang, C
    Ma, XH
    Cong, XP
    Yin, FL
    ADVANCES IN NEURAL NETWORKS - ISNN 2005, PT 2, PROCEEDINGS, 2005, 3497 : 795 - 800
  • [46] Applications of neural network to watermarking capacity
    Zhang, F
    Zhang, HB
    IEEE INTERNATIONAL SYMPOSIUM ON COMMUNICATIONS AND INFORMATION TECHNOLOGIES 2004 (ISCIT 2004), PROCEEDINGS, VOLS 1 AND 2: SMART INFO-MEDIA SYSTEMS, 2004, : 340 - 343
  • [47] Watermarking Neural Network with Compensation Mechanism
    Feng, Le
    Zhang, Xinpeng
    KNOWLEDGE SCIENCE, ENGINEERING AND MANAGEMENT (KSEM 2020), PT II, 2020, 12275 : 363 - 375
  • [48] Quantum Neural Network for image watermarking
    Hu, SY
    ADVANCES IN NEURAL NETWORKS - ISNN 2004, PT 2, 2004, 3174 : 669 - 674
  • [49] Image Denoiser Using Convolutional Neural Network with Deconvolution and Modified Residual Network
    Shin, Soo-Yeon
    Kim, Dong-Myung
    Suh, Jae-Won
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2019, E102D (08) : 1598 - 1601
  • [50] VulCausal: Robust Vulnerability Detection Using Neural Network Models from a Causal Perspective
    Kuang, Hongyu
    Zhang, Jingjing
    Yang, Feng
    Zhang, Long
    Huang, Zhijian
    Yang, Lin
    KNOWLEDGE SCIENCE, ENGINEERING AND MANAGEMENT, PT III, KSEM 2024, 2024, 14886 : 41 - 56