Robust Watermarking for Neural Network Models Using Residual Network

被引:1
作者
Wang, Lecong [1 ]
Wang, Zichi [2 ]
Li, Xinran [1 ]
Qin, Chuan [1 ]
机构
[1] Univ Shanghai Sci & Technol, Sch Opt Elect & Comp Engn, Shanghai, Peoples R China
[2] Shanghai Univ, Sch Commun & Informat Engn, Shanghai, Peoples R China
来源
2022 IEEE 24TH INTERNATIONAL WORKSHOP ON MULTIMEDIA SIGNAL PROCESSING (MMSP) | 2022年
基金
上海市自然科学基金; 中国国家自然科学基金;
关键词
Digital watermarking; robustness; neural networks; residual block;
D O I
10.1109/MMSP55362.2022.9949601
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
The training process of a neural network model requires plenty of costs, and so the intellectual property of neural network models should be protected. To this end, we propose a robust watermarking scheme for neural network models in this paper. In our scheme, an independent network is specially designed to help embedding watermarks into a given host network, and also be used for watermark extraction. The independent network is designed based on the residual structure which is sensitive to the parameter changes of the host network and conducive to finding suitable embedding locations. In addition, some residual blocks are randomly discarded during watermark embedding, which can increase the robustness against popular model attacks. Experimental results show that our scheme achieves satisfactory watermark verification performance without decreasing the original performance of the host network, even if the host network has been maliciously tampered.
引用
收藏
页数:6
相关论文
共 50 条
  • [21] Robust Training of Microwave Neural Network Models Using Combined Global/Local Optimization Techniques
    Ninomiya, Hiroshi
    Wan, Shan
    Kabir, Humayun
    Zhang, Xin
    Zhang, Q. J.
    2008 IEEE MTT-S INTERNATIONAL MICROWAVE SYMPOSIUM DIGEST, VOLS 1-4, 2008, : 1257 - +
  • [22] Prediction and classification of minerals using deep residual neural network
    Theerthagiri, Prasannavenkatesan
    Ruby, A. Usha
    George Chellin Chandran, J.
    NEURAL COMPUTING & APPLICATIONS, 2024, 36 (04) : 1539 - 1551
  • [23] Evaluation of neural network robust reliability using information-gap theory
    Pierce, S. Gareth
    Ben-Haim, Yakov
    Worden, Keith
    Manson, Graeme
    IEEE TRANSACTIONS ON NEURAL NETWORKS, 2006, 17 (06): : 1349 - 1361
  • [24] Prediction and classification of minerals using deep residual neural network
    Prasannavenkatesan Theerthagiri
    A. Usha Ruby
    J. George Chellin Chandran
    Neural Computing and Applications, 2024, 36 : 1539 - 1551
  • [25] Robust Hashing for Neural Network Models via Heterogeneous Graph Representation
    Huang, Lin
    Tao, Yitong
    Qin, Chuan
    Zhang, Xinpeng
    IEEE SIGNAL PROCESSING LETTERS, 2024, 31 : 2640 - 2644
  • [26] RWN: ROBUST WATERMARKING NETWORK FOR IMAGE CROPPING LOCALIZATION
    Ying, Qichao
    Hu, Xiaoxiao
    Zhang, Xiangyu
    Qian, Zhenxing
    Li, Sheng
    Zhang, Xinpeng
    2022 IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING, ICIP, 2022, : 301 - 305
  • [27] DAMAGELESS DIGITAL WATERMARKING USING COMPLEX-VALUED ARTIFICIAL NEURAL NETWORK
    Olanweraju, Rashidah Funke
    Aburas, Abdurazzag Ali
    Khalifa, Othman Omran
    Abdalla, Aisha-Hassan Hashim
    JOURNAL OF INFORMATION AND COMMUNICATION TECHNOLOGY-MALAYSIA, 2010, 9 : 111 - 137
  • [28] A novel blind watermarking scheme based on neural network in wavelet domain
    Wang, Zhenfei
    Wang, Nengchao
    Shi, Baochang
    WCICA 2006: SIXTH WORLD CONGRESS ON INTELLIGENT CONTROL AND AUTOMATION, VOLS 1-12, CONFERENCE PROCEEDINGS, 2006, : 3024 - +
  • [29] High-Order Residual Convolutional Neural Network for Robust Crop Disease Recognition
    Zeng, Weihui
    Li, Miao
    Zhang, Jian
    Chen, Lei
    Fang, Sisi
    Wang, Jingxian
    PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND APPLICATION ENGINEERING (CSAE2018), 2018,
  • [30] Using Neural Network Models for Wine Review Classification
    Katumullage, Duwani
    Yang, Chenyu
    Barth, Jackson
    Cao, Jing
    JOURNAL OF WINE ECONOMICS, 2022, 17 (01) : 27 - 41