Robust Watermarking for Neural Network Models Using Residual Network

被引:1
作者
Wang, Lecong [1 ]
Wang, Zichi [2 ]
Li, Xinran [1 ]
Qin, Chuan [1 ]
机构
[1] Univ Shanghai Sci & Technol, Sch Opt Elect & Comp Engn, Shanghai, Peoples R China
[2] Shanghai Univ, Sch Commun & Informat Engn, Shanghai, Peoples R China
来源
2022 IEEE 24TH INTERNATIONAL WORKSHOP ON MULTIMEDIA SIGNAL PROCESSING (MMSP) | 2022年
基金
上海市自然科学基金; 中国国家自然科学基金;
关键词
Digital watermarking; robustness; neural networks; residual block;
D O I
10.1109/MMSP55362.2022.9949601
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
The training process of a neural network model requires plenty of costs, and so the intellectual property of neural network models should be protected. To this end, we propose a robust watermarking scheme for neural network models in this paper. In our scheme, an independent network is specially designed to help embedding watermarks into a given host network, and also be used for watermark extraction. The independent network is designed based on the residual structure which is sensitive to the parameter changes of the host network and conducive to finding suitable embedding locations. In addition, some residual blocks are randomly discarded during watermark embedding, which can increase the robustness against popular model attacks. Experimental results show that our scheme achieves satisfactory watermark verification performance without decreasing the original performance of the host network, even if the host network has been maliciously tampered.
引用
收藏
页数:6
相关论文
共 50 条
  • [41] Convolutional neural network-based image watermarking using discrete wavelet transform
    Tavakoli A.
    Honjani Z.
    Sajedi H.
    International Journal of Information Technology, 2023, 15 (4) : 2021 - 2029
  • [42] HiFiMSFA: Robust and High-Fidelity Image Watermarking Using Attention Augmented Deep Network
    Zhang, Yulin
    Ni, Jiangqun
    Su, Wenkang
    IEEE SIGNAL PROCESSING LETTERS, 2025, 32 : 781 - 785
  • [43] A semi-fragile watermarking scheme based on neural network
    Hong, F
    Shi, L
    Luo, T
    PROCEEDINGS OF THE 2004 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-7, 2004, : 3536 - 3541
  • [44] Probabilistic Forecasting of El Nino Using Neural Network Models
    Petersik, Paul Johannes
    Dijkstra, Henk A.
    GEOPHYSICAL RESEARCH LETTERS, 2020, 47 (06)
  • [45] Multiscale topology optimization using neural network surrogate models
    White, Daniel A.
    Arrighi, William J.
    Kudo, Jun
    Watts, Seth E.
    COMPUTER METHODS IN APPLIED MECHANICS AND ENGINEERING, 2019, 346 : 1118 - 1135
  • [46] An Improved Watermarking Method Based on Neural Network for Color Image
    Yi, Qianhui
    Wang, Ke
    2009 IEEE INTERNATIONAL CONFERENCE ON MECHATRONICS AND AUTOMATION, VOLS 1-7, CONFERENCE PROCEEDINGS, 2009, : 3113 - 3117
  • [47] A Novel Framework for Digital Image Watermarking Based on Neural Network
    He, Jia
    ELEKTRONIKA IR ELEKTROTECHNIKA, 2024, 30 (03) : 83 - 93
  • [48] Robust Network Traffic Classification Based on Information Bottleneck Neural Network
    Lin, Wei
    Chen, Yu
    IEEE ACCESS, 2024, 12 : 150169 - 150179
  • [49] Adaptive patchwork method for audio watermarking based on neural network
    Pun C.-M.
    Jiang J.-J.
    International Journal of Digital Content Technology and its Applications, 2011, 5 (05) : 84 - 94
  • [50] Anaerobic threshold measurement using dynamic neural network models
    Ringwood, JV
    COMPUTERS IN BIOLOGY AND MEDICINE, 1999, 29 (04) : 259 - 271