Copyright protection of deep neural network models using digital watermarking: a comparative study

被引:19
作者
Fkirin, Alaa [1 ]
Attiya, Gamal [2 ]
El-Sayed, Ayman [2 ]
Shouman, Marwa A. [2 ]
机构
[1] Fayoum Univ, Fac Engn, Dept Elect Engn, Al Fayyum, Egypt
[2] Menoufia Univ, Fac Elect Engn, Comp Sci & Engn Dept, Menoufia Govemorate, Menouf, Egypt
关键词
DNN; Black-box; White-box; Deep learning; Copyright protection; Digital watermarking; IMAGE; SCHEME; DCT; SVD;
D O I
10.1007/s11042-022-12566-z
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Nowadays, deep learning achieves higher levels of accuracy than ever before. This evolution makes deep learning crucial for applications that care for safety, like self-driving cars and helps consumers to meet most of their expectations. Further, Deep Neural Networks (DNNs) are powerful approaches that employed to solve several issues. These issues include healthcare, advertising, marketing, computer vision, speech processing, natural language processing. The DNNs have marvelous progress in these different fields, but training such DNN models requires a lot of time, a vast amount of data and in most cases a lot of computational steps. Selling such pre-trained models is a profitable business model. But, sharing them without the owner permission is a serious threat. Unfortunately, once the models are sold, they can be easily copied and redistributed. This paper first presents a review of how digital watermarking technologies are really very helpful in the copyright protection of the DNNs. Then, a comparative study between the latest techniques is presented. Also, several optimizers are proposed to improve the accuracy against the fine-tuning attack. Finally, several experiments are performed with black-box settings using several optimizers and the results are compared with the SGD optimizer.
引用
收藏
页码:15961 / 15975
页数:15
相关论文
共 50 条
  • [21] Copyright protection of digital images by means of frequency domain watermarking
    Piva, A
    Barni, M
    Bartolini, F
    MATHEMATICS OF DATA/IMAGE CODING, COMPRESSION, AND ENCRYPTION, 1998, 3456 : 25 - 35
  • [22] A batch copyright scheme for digital image based on deep neural network
    Lu, Haoyu
    Gong, Daofu
    Liu, Fenlin
    Liu, Hui
    Qu, Jinghua
    MATHEMATICAL BIOSCIENCES AND ENGINEERING, 2019, 16 (05) : 6121 - 6133
  • [23] Combined watermarking and fingerprinting technologies for digital image copyright protection
    Chang, M-C
    Lou, D-C
    Tso, H-K
    IMAGING SCIENCE JOURNAL, 2007, 55 (01) : 3 - 12
  • [24] A copyright protection using watermarking algorithm
    Hassanien, Abou Ella
    INFORMATICA, 2006, 17 (02) : 187 - 198
  • [25] A Blind Watermarking Technique using Redundant Wavelet Transform for Copyright Protection
    Ernawan, Ferda
    Kabir, Muhammad Nomani
    2018 IEEE 14TH INTERNATIONAL COLLOQUIUM ON SIGNAL PROCESSING & ITS APPLICATIONS (CSPA 2018), 2018, : 221 - 226
  • [26] A robust digital watermarking scheme for video copyright protection in the wavelet domain
    Preda, Radu O.
    Vizireanu, Dragos N.
    MEASUREMENT, 2010, 43 (10) : 1720 - 1726
  • [27] A Robust Digital Watermarking Algorithm for Copyright Protection of Aerial Photogrammetric Images
    Hsu, Pai-Hui
    Chen, Chih-Cheng
    PHOTOGRAMMETRIC RECORD, 2016, 31 (153) : 51 - 70
  • [28] Copyright protection of database system based on digital watermarking
    Sheng, Gang
    Cui, Xinchun
    ADVANCING SCIENCE THROUGH COMPUTATION, 2008, : 325 - 328
  • [29] DIGITAL WATERMARKING DESIGN IN IMAGE AND VIDEO COPYRIGHT PROTECTION
    Wang Xinhui
    2011 3RD INTERNATIONAL CONFERENCE ON COMPUTER TECHNOLOGY AND DEVELOPMENT (ICCTD 2011), VOL 1, 2012, : 17 - 20
  • [30] Copyright protection of deep image classification models
    Vybornova, Y. D.
    Ulyanov, D. I.
    COMPUTER OPTICS, 2023, 47 (06) : 980 - +