Intellectual property protection for deep semantic segmentation models

被引:8
|
作者
Ruan, Hongjia [1 ]
Song, Huihui [1 ]
Liu, Bo [2 ]
Cheng, Yong [1 ]
Liu, Qingshan [1 ]
机构
[1] Nanjing Univ Informat Sci & Technol, CICAEET, B DAT, Nanjing 211800, Peoples R China
[2] JD Finance Amer Corp, Mountain View, CA 94089 USA
基金
中国国家自然科学基金;
关键词
deep neural networks; intellectual property protection; trigger-set; passport layer;
D O I
10.1007/s11704-021-1186-y
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Deep neural networks have achieved great success in varieties of artificial intelligent fields. Since training a good deep model is often challenging and costly, such deep models are of great value and even the key commercial intellectual properties. Recently, deep model intellectual property protection has drawn great attention from both academia and industry, and numerous works have been proposed. However, most of them focus on the classification task. In this paper, we present the first attempt at protecting deep semantic segmentation models from potential infringements. In details, we design a new hybrid intellectual property protection framework by combining the trigger-set based and passport based watermarking simultaneously. Within it, the trigger-set based watermarking mechanism aims to force the network output copyright watermarks for a pre-defined trigger image set, which enables black-box remote ownership verification. And the passport based watermarking mechanism is to eliminate the ambiguity attack risk of trigger-set based watermarking by adding an extra passport layer into the target model. Through extensive experiments, the proposed framework not only demonstrates its effectiveness upon existing segmentation models, but also shows strong robustness to different attack techniques.
引用
收藏
页数:9
相关论文
共 50 条
  • [31] International Intellectual Property Protection
    De Miguel Asensio, Pedro Alberto
    ANUARIO ESPANOL DE DERECHO INTERNACIONAL PRIVADO, 2019, 19-20 : 827 - 829
  • [32] International protection of intellectual property
    Grossman, GA
    Lai, ELC
    AMERICAN ECONOMIC REVIEW, 2004, 94 (05): : 1635 - 1653
  • [33] Intellectual property protection and pharmaceuticals
    Chirac, P
    Kaddar, M
    LANCET, 1998, 352 (9133): : 1072 - 1072
  • [34] PROTECTION OF INTELLECTUAL PROPERTY INTERESTS
    ROSNAY, JD
    LEONARDO, 1996, 29 (03) : 250 - 251
  • [35] Watermarking for intellectual property protection
    Fan, YC
    Tsao, HW
    ELECTRONICS LETTERS, 2003, 39 (18) : 1316 - 1318
  • [36] Intellectual property protection for plants
    Cheryl H. Agris
    Nature Biotechnology, 1999, 17 : 197 - 198
  • [37] Intellectual Property Protection at Border
    Lakshmi, V. Vijay
    Patro, Aravind M.
    JOURNAL OF INTELLECTUAL PROPERTY RIGHTS, 2009, 14 (04): : 330 - 339
  • [38] Models of intellectual property
    Crespi, S
    TRENDS IN BIOTECHNOLOGY, 2002, 20 (11) : 451 - 451
  • [39] DeepTrace: A Secure Fingerprinting Framework for Intellectual Property Protection of Deep Neural Networks
    Wang, Runhao
    Kang, Jiexiang
    Yin, Wei
    Wang, Hui
    Sun, Haiying
    Chen, Xiaohong
    Gao, Zhongjie
    Wang, Shuning
    Liu, Jing
    2021 IEEE 20TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2021), 2021, : 188 - 195
  • [40] Deep Model Intellectual Property Protection with Compression-Resistant Model Watermarking
    Nie H.
    Lu S.
    Wu J.
    Zhu J.
    IEEE Transactions on Artificial Intelligence, 2024, 5 (07): : 1 - 12