Adversarial Embedding: A robust and elusive Steganography and Watermarking technique

11/14/2019
by   Salah Ghamizi, et al.
0

We propose adversarial embedding, a new steganography and watermarking technique that embeds secret information within images. The key idea of our method is to use deep neural networks for image classification and adversarial attacks to embed secret information within images. Thus, we use the attacks to embed an encoding of the message within images and the related deep neural network outputs to extract it. The key properties of adversarial attacks (invisible perturbations, nontransferability, resilience to tampering) offer guarantees regarding the confidentiality and the integrity of the hidden messages. We empirically evaluate adversarial embedding using more than 100 models and 1,000 messages. Our results confirm that our embedding passes unnoticed by both humans and steganalysis methods, while at the same time impedes illicit retrieval of the message (less than 13 interceptor has some knowledge about our model), and is resilient to soft and (to some extent) aggressive image tampering (up to 100 jpeg compression). We further develop our method by proposing a new type of adversarial attack which improves the embedding density (amount of hidden information) of our method to up to 10 bits per pixel.

READ FULL TEXT
research
10/05/2022

Hiding Images in Deep Probabilistic Models

Data hiding with deep neural networks (DNNs) has experienced impressive ...
research
10/26/2020

Robust and Verifiable Information Embedding Attacks to Deep Neural Networks via Error-Correcting Codes

In the era of deep learning, a user often leverages a third-party machin...
research
05/24/2020

Robust Spatial-spread Deep Neural Image Watermarking

Watermarking is an operation of embedding an information into an image i...
research
02/07/2019

Hide and Speak: Deep Neural Networks for Speech Steganography

Steganography is the science of hiding a secret message within an ordina...
research
01/31/2018

Synchronization Detection and Recovery of Steganographic Messages with Adversarial Learning

As a means for secret communication, steganography aims at concealing a ...
research
01/12/2021

DeepiSign: Invisible Fragile Watermark to Protect the Integrityand Authenticity of CNN

Convolutional Neural Networks (CNNs) deployed in real-life applications ...
research
04/27/2021

Deep 3D-to-2D Watermarking: Embedding Messages in 3D Meshes and Extracting Them from 2D Renderings

Digital watermarking is widely used for copyright protection. Traditiona...

Please sign up or login with your details

Forgot password? Click here to reset