Generative Model Watermarking Suppressing High-Frequency Artifacts

05/21/2023
by   Li Zhang, et al.
0

Protecting deep neural networks (DNNs) against intellectual property (IP) infringement has attracted an increasing attention in recent years. Recent advances focus on IP protection of generative models, which embed the watermark information into the image generated by the model to be protected. Although the generated marked image has good visual quality, it introduces noticeable artifacts to the marked image in high-frequency area, which severely impairs the imperceptibility of the watermark and thereby reduces the security of the watermarking system. To deal with this problem, in this paper, we propose a novel framework for generative model watermarking that can suppress those high-frequency artifacts. The main idea of the proposed framework is to design a new watermark embedding network that can suppress high-frequency artifacts by applying anti-aliasing. To realize anti-aliasing, we use low-pass filtering for the internal sampling layers of the new watermark embedding network. Meanwhile, joint loss optimization and adversarial training are applied to enhance the effectiveness and robustness. Experimental results indicate that the marked model not only maintains the performance very well on the original task, but also demonstrates better imperceptibility and robustness on the watermarking task. This work reveals the importance of suppressing high-frequency artifacts for enhancing imperceptibility and security of generative model watermarking.

READ FULL TEXT

page 1

page 3

page 8

page 10

research
02/17/2023

High-frequency Matters: An Overwriting Attack and defense for Image-processing Neural Network Watermarking

In recent years, there has been significant advancement in the field of ...
research
01/12/2023

Phase-shifted Adversarial Training

Adversarial training has been considered an imperative component for saf...
research
04/07/2021

Rethinking the Backdoor Attacks' Triggers: A Frequency Perspective

Backdoor attacks have been considered a severe security threat to deep l...
research
06/21/2022

Deep Metric Color Embeddings for Splicing Localization in Severely Degraded Images

One common task in image forensics is to detect spliced images, where mu...
research
09/30/2022

Generative Model Watermarking Based on Human Visual System

Intellectual property protection of deep neural networks is receiving at...
research
11/03/2021

On the Frequency Bias of Generative Models

The key objective of Generative Adversarial Networks (GANs) is to genera...
research
11/07/2021

A-PixelHop: A Green, Robust and Explainable Fake-Image Detector

A novel method for detecting CNN-generated images, called Attentive Pixe...

Please sign up or login with your details

Forgot password? Click here to reset