paper-with-me

홈 › Papers

TATTOOED: A Robust Deep Neural Network Watermarking Scheme based on Spread-Spectrum Channel Coding

2022-02-12 · Giulio Pagnotta, Dorjan Hitaj, Briland Hitaj, Fernando Perez-Cruz, Luigi V. Mancini

Watermarking of deep neural networks (DNNs) has gained significant traction in recent years, with numerous (watermarking) strategies being proposed as mechanisms that can help verify the ownership of a DNN in scenarios where these models are obtained without the permission of the owner. However, a growing body of work has demonstrated that existing watermarking mechanisms are highly susceptible to removal techniques, such as fine-tuning, parameter pruning, or shuffling. In this paper, we build upon extensive prior work on covert (military) communication and propose TATTOOED, a novel DNN watermarking technique that is robust to existing threats. We demonstrate that using TATTOOED as their watermarking mechanisms, the DNN owner can successfully obtain the watermark and verify model ownership even in scenarios where 99% of model parameters are altered. Furthermore, we show that TATTOOED is easy to employ in training pipelines, and has negligible impact on model performance.

📄 PDF Abstract BibTeX arXiv:2202.06091

Code (0)

등록된 구현이 없습니다.

Methods 이 논문이 사용한 방법론

Pruning 설명 없음

Similar Papers 제목 키워드 기반

Multi-Channel Spread-Spectrum Code Watermarking

2026-07-07 · Soohyeon Choi, Debin Gao, Yue Duan arxiv

Attributing code to the large language model that produced it is essential for provenance, licensing, and misuse accountability, yet no deployed watermark meets this need. Generation-time schemes require access to the pr…

SpreadMark: Robust Image Watermarking via Spread-Spectrum Embedding

2026-08-04 · Wei Song, Yuxin Cao, Zhenchang Xing, Liming Zhu 외 arxiv

Invisible image watermarks are increasingly used for deepfake detection and provenance tracking, where they must survive not only incidental distortions but also deliberate removal. We revisit spread-spectrum embedding, …

DeepFake Detection

Spread-Transform Dither Modulation Watermarking of Deep Neural Network

2020-12-28 · Yue Li, Benedetta Tondi, Mauro Barni

DNN watermarking is receiving an increasing attention as a suitable mean to protect the Intellectual Property Rights associated to DNN models. Several methods proposed so far are inspired to the popular Spread Spectrum (…

A Chirp Spread Spectrum Modulation Scheme for Robust Power Line Communication

2021-06-26 · Stephen Robson, Abderrahmane Haddad

This paper proposes the use of a LoRa like chirp spread spectrum physical layer as the basis for a new Power Line Communication modulation scheme suited for low-bandwidth communication. It is shown that robust communicat…

NSmark: Null Space Based Black-box Watermarking Defense Framework for Language Models

2024-10-16 · Haodong Zhao, Jinming Hu, Peixuan Li, Fangqi Li 외

Language models (LMs) have emerged as critical intellectual property (IP) assets that necessitate protection. Although various watermarking strategies have been proposed, they remain vulnerable to Linear Functionality Eq…