DiffWA: Diffusion Models for Watermark Attack

06/22/2023
by   Xinyu Li, et al.
0

With the rapid development of deep neural networks(DNNs), many robust blind watermarking algorithms and frameworks have been proposed and achieved good results. At present, the watermark attack algorithm can not compete with the watermark addition algorithm. And many watermark attack algorithms only care about interfering with the normal extraction of the watermark, and the watermark attack will cause great visual loss to the image. To this end, we propose DiffWA, a conditional diffusion model with distance guidance for watermark attack, which can restore the image while removing the embedded watermark. The core of our method is training an image-to-image conditional diffusion model on unwatermarked images and guiding the conditional model using a distance guidance when sampling so that the model will generate unwatermarked images which is similar to original images. We conducted experiments on CIFAR-10 using our proposed models. The results shows that the model can remove the watermark with good effect and make the bit error rate of watermark extraction higher than 0.4. At the same time, the attacked image will maintain good visual effect with PSNR more than 31 and SSIM more than 0.97 compared with the original image.

READ FULL TEXT

page 6

page 7

page 8

page 11

page 12

page 13

research
08/30/2023

Intriguing Properties of Diffusion Models: A Large-Scale Dataset for Evaluating Natural Attack Capability in Text-to-Image Generative Models

Denoising probabilistic diffusion models have shown breakthrough perform...
research
05/15/2023

A Reproducible Extraction of Training Images from Diffusion Models

Recently, Carlini et al. demonstrated the widely used model Stable Diffu...
research
10/06/2022

On Distillation of Guided Diffusion Models

Classifier-free guided diffusion models have recently been shown to be h...
research
06/01/2023

Robust Backdoor Attack with Visible, Semantic, Sample-Specific, and Compatible Triggers

Deep neural networks (DNNs) can be manipulated to exhibit specific behav...
research
10/21/2022

Conditional Diffusion with Less Explicit Guidance via Model Predictive Control

How much explicit guidance is necessary for conditional diffusion? We co...
research
07/06/2023

Single Image LDR to HDR Conversion using Conditional Diffusion

Digital imaging aims to replicate realistic scenes, but Low Dynamic Rang...
research
08/16/2023

Diff-CAPTCHA: An Image-based CAPTCHA with Security Enhanced by Denoising Diffusion Model

To enhance the security of text CAPTCHAs, various methods have been empl...

Please sign up or login with your details

Forgot password? Click here to reset