Intellectual Property Protection of Deep Neural Network Models Based on Watermarking Technology

被引:0
|
作者
Jin, Biao [1 ]
Lin, Xiang [3 ]
Xiong, Jinbo [1 ,2 ]
You, Weijing [1 ,2 ]
Li, Xuan [1 ]
Yao, Zhiqiang [1 ]
机构
[1] College of Computer and Cyber Security, Fujian Normal University, Fuzhou,350117, China
[2] Fujian Provincial Key Lab of Network Security and Cryptology (Fujian Normal University), Fuzhou,350117, China
[3] College of Artificial Intelligence, Yango University, Fuzhou,350015, China
基金
中国国家自然科学基金;
关键词
D O I
10.7544/issn1000-1239.202440413
中图分类号
学科分类号
摘要
Constructing an excellent deep neural network (DNN) model requires a large amount of training data, high-performance equipment, and profound expertise and knowledge. Therefore, DNN models should be regarded as the intellectual property (IP) of their owners. Protecting the IP of a DNN model also underscores the appreciation for the value of the data elements integral to its development and training process. However, DNN models are vulnerable to attacks such as theft, tampering, and illegal dissemination by malicious users. The quest for effective strategies to protect their IP has emerged as a pivotal area of academic research and an urgent challenge confronting the industry. Unlike existing related reviews, we focus on the application scenarios of DNN model watermarking. We mainly review the methodologies for DNN model IP protection based on watermarking technology from two dimensions: robust model watermarking for model copyright declaration and fragile model watermarking for model integrity verification. We discuss their characteristics, advantages, and limitations. Additionally, we elaborate on the practical application of DNN model watermarking technology. Finally, by summarizing the common technologies of various methods, we prognosticate future research directions for DNN model IP protection. © 2024 Science Press. All rights reserved.
引用
收藏
页码:2587 / 2606
相关论文
共 50 条
  • [1] Deep Model Intellectual Property Protection via Deep Watermarking
    Zhang, Jie
    Chen, Dongdong
    Liao, Jing
    Zhang, Weiming
    Feng, Huamin
    Hua, Gang
    Yu, Nenghai
    IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2022, 44 (08) : 4005 - 4020
  • [2] Protecting Intellectual Property of Deep Neural Networks with Watermarking
    Zhang, Jialong
    Gu, Zhongshu
    Jang, Jiyong
    Wu, Hui
    Stoecklin, Marc Ph
    Huang, Heqing
    Molloy, Ian
    PROCEEDINGS OF THE 2018 ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (ASIACCS'18), 2018, : 159 - 171
  • [3] A PUF-Based Approach for Copy Protection of Intellectual Property in Neural Network Models
    Dorfmeister, Daniel
    Ferrarotti, Flavio
    Fischer, Bernhard
    Schwandtner, Martin
    Sochor, Hannes
    SOFTWARE QUALITY AS A FOUNDATION FOR SECURITY, SWQD 2024, 2024, 505 : 153 - 169
  • [4] Watermarking for intellectual property protection
    Fan, YC
    Tsao, HW
    ELECTRONICS LETTERS, 2003, 39 (18) : 1316 - 1318
  • [5] Watermarking of Deep Recurrent Neural Network Using Adversarial Examples to Protect Intellectual Property
    Rathi, Pulkit
    Bhadauria, Saumya
    Rathi, Sugandha
    APPLIED ARTIFICIAL INTELLIGENCE, 2022, 36 (01)
  • [6] Watermarking techniques for intellectual property protection
    Kahng, AB
    Lach, J
    Mangione-Smith, WH
    Mantik, S
    Markov, IL
    Potkonjak, M
    Tucker, P
    Wang, H
    Wolfe, G
    1998 DESIGN AUTOMATION CONFERENCE, PROCEEDINGS, 1998, : 776 - 781
  • [7] Intellectual property protection for deep semantic segmentation models
    Hongjia Ruan
    Huihui Song
    Bo Liu
    Yong Cheng
    Qingshan Liu
    Frontiers of Computer Science, 2023, 17
  • [8] Intellectual property protection for deep semantic segmentation models
    Ruan, Hongjia
    Song, Huihui
    Liu, Bo
    Cheng, Yong
    Liu, Qingshan
    FRONTIERS OF COMPUTER SCIENCE, 2023, 17 (01)
  • [9] Copyright protection of deep neural network models using digital watermarking: a comparative study
    Alaa Fkirin
    Gamal Attiya
    Ayman El-Sayed
    Marwa A. Shouman
    Multimedia Tools and Applications, 2022, 81 : 15961 - 15975
  • [10] Copyright protection of deep neural network models using digital watermarking: a comparative study
    Fkirin, Alaa
    Attiya, Gamal
    El-Sayed, Ayman
    Shouman, Marwa A.
    MULTIMEDIA TOOLS AND APPLICATIONS, 2022, 81 (11) : 15961 - 15975