NeuNAC: A novel fragile watermarking algorithm for integrity protection of neural networks

被引:30
作者
Botta, Marco [1 ]
Cavagnino, Davide [1 ]
Esposito, Roberto [1 ]
机构
[1] Univ Turin, Comp Sci Dept, Corso Svizzera 185, I-10149 Turin, Italy
基金
欧盟地平线“2020”;
关键词
Deep neural network; Fragile watermarking; Integrity protection; Linear transformation;
D O I
10.1016/j.ins.2021.06.073
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The last decade has witnessed a massive deployment of Machine Learning tools in everyday life automated tasks. Neural Networks are nowadays in use in a growing number of application areas because of their excellent performances. Unfortunately, it has been shown by many researchers that they can be attacked and fooled in several different ways, and this can dangerously impair their ability to correctly perform their tasks. In this paper we describe a watermarking algorithm that can protect and verify the integrity of (Deep) Neural Networks when deployed in safety critical systems, such as autonomous driving systems or monitoring and surveillance systems. (c) 2021 The Authors. Published by Elsevier Inc. This is an open access article under the CC BY NC-ND license (http://creativecommons.org/licenses/by-nc-nd/4.0/).
引用
收藏
页码:228 / 241
页数:14
相关论文
共 30 条
[1]  
Adi Y, 2018, PROCEEDINGS OF THE 27TH USENIX SECURITY SYMPOSIUM, P1615
[2]  
Amodei D., 2015, ARXIV151202595V1CSCL
[3]  
[Anonymous], 2014, ARXIV13126199V4CSCV
[4]  
[Anonymous], 2015, ARXIV14126572V3STATM
[5]   Digital Image Watermarking Techniques: A Review [J].
Begum, Mahbuba ;
Uddin, Mohammad Shorif .
INFORMATION, 2020, 11 (02)
[6]   A modular framework for color image watermarking [J].
Botta, Marco ;
Cavagnino, Davide ;
Pomponiu, Victor .
SIGNAL PROCESSING, 2016, 119 :102-114
[7]   Automatic Selection of GA Parameters for Fragile Watermarking [J].
Botta, Marco ;
Cavagnino, Davide ;
Pomponiu, Victor .
APPLICATIONS OF EVOLUTIONARY COMPUTATION, 2014, 8602 :526-537
[8]  
Chen H., 2019, ARXIV190400344V1CSMM
[9]   DeepMarks: A Secure Fingerprinting Framework for Digital Rights Management of Deep Learning Models [J].
Chen, Huili ;
Rouhani, Bita Darvish ;
Fu, Cheng ;
Zhao, Jishen ;
Koushanfar, Farinaz .
ICMR'19: PROCEEDINGS OF THE 2019 ACM INTERNATIONAL CONFERENCE ON MULTIMEDIA RETRIEVAL, 2019, :105-113
[10]  
Goldberg D.E., 1989, Optimization, Machine Learning, V1