A Protection Method of Trained CNN Model with Secret Key from Unauthorized Access

05/31/2021
by   AprilPyone MaungMaung, et al.
0

In this paper, we propose a novel method for protecting convolutional neural network (CNN) models with a secret key set so that unauthorized users without the correct key set cannot access trained models. The method enables us to protect not only from copyright infringement but also the functionality of a model from unauthorized access without any noticeable overhead. We introduce three block-wise transformations with a secret key set to generate learnable transformed images: pixel shuffling, negative/positive transformation, and FFX encryption. Protected models are trained by using transformed images. The results of experiments with the CIFAR and ImageNet datasets show that the performance of a protected model was close to that of non-protected models when the key set was correct, while the accuracy severely dropped when an incorrect key set was given. The protected model was also demonstrated to be robust against various attacks. Compared with the state-of-the-art model protection with passports, the proposed method does not have any additional layers in the network, and therefore, there is no overhead during training and inference processes.

READ FULL TEXT

page 5

page 6

research
03/05/2021

Transfer Learning-Based Model Protection With Secret Key

We propose a novel method for protecting trained models with a secret ke...
research
08/06/2020

Training DNN Model with Secret Key for Model Protection

In this paper, we propose a model protection method by using block-wise ...
research
11/17/2021

Protection of SVM Model with Secret Key from Unauthorized Access

In this paper, we propose a block-wise image transformation method with ...
research
07/20/2021

Protecting Semantic Segmentation Models by Using Block-wise Image Encryption with Secret Key from Unauthorized Access

Since production-level trained deep neural networks (DNNs) are of a grea...
research
04/09/2021

Piracy-Resistant DNN Watermarking by Block-Wise Image Transformation with Secret Key

In this paper, we propose a novel DNN watermarking method that utilizes ...
research
02/06/2023

Protecting Language Generation Models via Invisible Watermarking

Language generation models have been an increasingly powerful enabler fo...
research
11/24/2022

Seeds Don't Lie: An Adaptive Watermarking Framework for Computer Vision Models

In recent years, various watermarking methods were suggested to detect c...

Please sign up or login with your details

Forgot password? Click here to reset