Semi-fragile neural network watermarking for content authentication and tampering localization

数字水印 计算机科学 认证(法律) 人工神经网络 集合(抽象数据类型) 数字内容 先决条件 人工智能 面子(社会学概念) 内容(测量理论) 计算机安全 数据挖掘 图像(数学) 数学 社会学 程序设计语言 数学分析 多媒体 社会科学
作者
Zihan Yuan,Xinpeng Zhang,Zichi Wang,Zhaoxia Yin
出处
期刊:Expert Systems With Applications [Elsevier]
卷期号:236: 121315-121315 被引量:11
标识
DOI:10.1016/j.eswa.2023.121315
摘要

As an emerging digital product, artificial intelligence models face the risk of being modified. Malicious tampering will severely damage model functions, which is different from normal modifications. In addition, tampering localization for targeted repair can effectively reduce the cost. Therefore, it is crucial to achieve model content authentication and locate the tampering location. We proposed a novel semi-fragile neural network watermarking method in this paper to address these issues. Specifically, with the precondition of maintaining model performance, we proposed a method that generates a set of semi-fragile samples for a model to achieve the content authentication and tampering localization. The experiment results show that the content authentication of the model can be achieved by analyzing the output results of the model for the semi-fragile samples. When the model is processed normally, the output results are consistent with the expected label, while when the model is maliciously tampered with, the model produces unstable output. Furthermore, the tamper localization of the model can be further achieved through the information hidden in the semi-fragile samples, resulting in an average accuracy of more than 99.42%. In addition, our method is also effective for other deep neural networks.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
刚刚
xxl发布了新的文献求助10
1秒前
Pippi完成签到,获得积分10
1秒前
柳如花发布了新的文献求助10
1秒前
orixero应助有有采纳,获得10
1秒前
热情礼貌一问三不知完成签到 ,获得积分10
3秒前
雨竹完成签到,获得积分10
4秒前
4秒前
Orange应助lk采纳,获得10
4秒前
5秒前
Ava应助Pippi采纳,获得10
6秒前
6秒前
6秒前
赘婿应助柳如花采纳,获得10
7秒前
FashionBoy应助tanmengjuan采纳,获得10
7秒前
whitedawn完成签到 ,获得积分10
9秒前
小狒狒发布了新的文献求助20
10秒前
豌豆公主发布了新的文献求助10
10秒前
11秒前
11秒前
不解释12112完成签到,获得积分10
12秒前
迷路世立完成签到,获得积分10
12秒前
12秒前
华仔应助口香糖采纳,获得10
13秒前
DYZ完成签到,获得积分10
13秒前
小橙完成签到 ,获得积分10
13秒前
爆米花应助儒雅从筠采纳,获得10
14秒前
柳如花完成签到,获得积分10
14秒前
李健的小迷弟应助Sg采纳,获得10
15秒前
15秒前
16秒前
有有发布了新的文献求助10
16秒前
16秒前
17秒前
MCS完成签到,获得积分10
17秒前
18秒前
apple发布了新的文献求助10
18秒前
19秒前
20秒前
20秒前
高分求助中
Modern Epidemiology, Fourth Edition 5000
Kinesiophobia : a new view of chronic pain behavior 5000
Molecular Biology of Cancer: Mechanisms, Targets, and Therapeutics 3000
Digital Twins of Advanced Materials Processing 2000
Propeller Design 2000
Weaponeering, Fourth Edition – Two Volume SET 2000
First commercial application of ELCRES™ HTV150A film in Nichicon capacitors for AC-DC inverters: SABIC at PCIM Europe 1000
热门求助领域 (近24小时)
化学 材料科学 医学 生物 工程类 有机化学 纳米技术 化学工程 生物化学 物理 计算机科学 内科学 复合材料 催化作用 物理化学 光电子学 电极 冶金 细胞生物学 基因
热门帖子
关注 科研通微信公众号,转发送积分 6007323
求助须知:如何正确求助?哪些是违规求助? 7538877
关于积分的说明 16122148
捐赠科研通 5153323
什么是DOI,文献DOI怎么找? 2760644
邀请新用户注册赠送积分活动 1738427
关于科研通互助平台的介绍 1632582