Anti-Neuron Watermarking: Protecting Personal Data Against Unauthorized Neural Model Training

09/18/2021
by   Zihang Zou, et al.
6

In this paper, we raise up an emerging personal data protection problem where user personal data (e.g. images) could be inappropriately exploited to train deep neural network models without authorization. To solve this problem, we revisit traditional watermarking in advanced machine learning settings. By embedding a watermarking signature using specialized linear color transformation to user images, neural models will be imprinted with such a signature if training data include watermarked images. Then, a third-party verifier can verify potential unauthorized usage by inferring the watermark signature from neural models. We further explore the desired properties of watermarking and signature space for convincing verification. Through extensive experiments, we show empirically that linear color transformation is effective in protecting user's personal images for various realistic settings. To the best of our knowledge, this is the first work to protect users' personal data from unauthorized usage in neural network training.

READ FULL TEXT
research
10/21/2020

Amnesiac Machine Learning

The Right to be Forgotten is part of the recently enacted General Data P...
research
07/02/2023

Tools for Verifying Neural Models' Training Data

It is important that consumers and regulators can verify the provenance ...
research
12/21/2021

fMRI Neurofeedback Learning Patterns are Predictive of Personal and Clinical Traits

We obtain a personal signature of a person's learning progress in a self...
research
05/19/2017

Online Signature Verification using Recurrent Neural Network and Length-normalized Path Signature

Inspired by the great success of recurrent neural networks (RNNs) in seq...
research
05/18/2020

An Object Oriented Approach For the Protection of Information Systems

We provide a protection system making use of encapsulation, messages com...
research
06/19/2021

XML Signature Wrapping Still Considered Harmful: A Case Study on the Personal Health Record in Germany

XML Signature Wrapping (XSW) has been a relevant threat to web services ...
research
10/18/2022

Transferable Unlearnable Examples

With more people publishing their personal data online, unauthorized dat...

Please sign up or login with your details

Forgot password? Click here to reset