Fetching the paper…
Reading the bibliography…
The training and creation of deep learning model is usually costly, thus it can be regarded as an intellectual property (IP) of the model creator.
2011
Earlier work this paper cites.
I. J. Goodfellow, J. Shlens, and C. Szegedy, “Explaining and harnessing adversarial examples,” in 3rd International Conference on Learning Representations , 2015, pp. 1–11
2015
Earlier work this paper cites.
F. Tramèr, F. Zhang, A. Juels, M. K. Reiter, and T. Ristenpart, “Stealing machine learning models via prediction APIs,” in 25th USENIX Security Symposium , 2016, pp. 601–618
2016
Earlier work this paper cites.
Y. Uchida, Y. Nagai, S. Sakazawa, and S. Satoh, “Embedding watermarks into deep neural networks,” in Proceedings of the ACM on International Conference on Multimedia Retrieval , 2017, pp. 269–277
2017
Earlier work this paper cites.
C. Song, T. Ristenpart, and V. Shmatikov, “Machine learning models that remember too much,” in Proceedings of the ACM SIGSAC Conference on computer and communications security , 2017, pp. 587–601
2017
Earlier work this paper cites.
2017
Earlier work this paper cites.
Y. Nagai, Y. Uchida, S. Sakazawa, and S. Satoh, “Digital watermarking for deep neural networks,” International Journal of Multimedia Information Retrieval , vol. 7, no. 1, pp. 3–16, 2018
2018
Earlier work this paper cites.
2018
Earlier work this paper cites.
J. Zhang, Z. Gu, J. Jang, H. Wu, M. P. Stoecklin, H. Huang, and I. Molloy, “Protecting intellectual property of deep neural networks with watermarking,” in Proceedings of the Asia Conference on Computer and Communications Security , 2018, pp. 159–172
2018
Earlier work this paper cites.
L. Gomez, A. Ibarrondo, J. Márquez, and P. Duverger, “Intellectual property protection for distributed neural networks - Towards confidentiality of data, model, and inference,” in Proceedings of the 15th International Joint Conference on e-Business and Telecommunications , 2018, pp. 313–320
2018
Earlier work this paper cites.
Y. Adi, C. Baum, M. Cissé, B. Pinkas, and J. Keshet, “Turning your weakness into a strength: Watermarking deep neural networks by backdooring,” in 27th USENIX Security Symposium , 2018, pp. 1615–1631
2018
Earlier work this paper cites.
J. Guo and M. Potkonjak, “Watermarking deep neural networks for embedded systems,” in Proceedings of the International Conference on Computer-Aided Design , 2018, pp. 1–8
2018
Earlier work this paper cites.
M. Chen and M. Wu, “Protect your deep neural networks from piracy,” in IEEE International Workshop on Information Forensics and Security , 2018, pp. 1–7
2018
Earlier work this paper cites.
R. Cammarota, I. Banerjee, and O. Rosenberg, “Machine learning IP protection,” in Proceedings of the International Conference on Computer-Aided Design , 2018, pp. 1–3
2018
Earlier work this paper cites.
B. D. Rouhani, H. Chen, and F. Koushanfar, “DeepSigns: An end-to-end watermarking framework for ownership protection of deep neural networks,” in Proceedings of the 24th International Conference on Architectural Support for Programming Languages and Operating Systems , 2019, pp. 485–497
2019
Earlier work this paper cites.
R. Namba and J. Sakuma, “Robust watermarking of neural network with exponential weighting,” in Proceedings of the ACM Asia Conference on Computer and Communications Security , 2019, pp. 228–240
2019
Earlier work this paper cites.
2019
Earlier work this paper cites.
H. Chen, B. D. Rouhani, C. Fu, J. Zhao, and F. Koushanfar, “DeepMarks: A secure fingerprinting framework for digital rights management of deep learning models,” in Proceedings of the International Conference on Multimedia Retrieval , 2019, pp. 105–113
2019
Earlier work this paper cites.
H. Chen, C. Fu, B. D. Rouhani, J. Zhao, and F. Koushanfar, “DeepAttest: An end-to-end attestation framework for deep neural networks,” in Proceedings of the 46th International Symposium on Computer Architecture , 2019, pp. 487–498
2019
Earlier work this paper cites.
2019
Earlier work this paper cites.
L. Gomez, M. Wilhelm, J. Márquez, and P. Duverger, “Security for distributed deep neural networks: Towards data confidentiality & intellectual property protection,” in Proceedings of the 16th International Joint Conference on e-Business and Telecommunications , 2019, pp. 439–447
2019
Earlier work this paper cites.
S. Sakazawa, E. Myodo, K. Tasaka, and H. Yanagihara, “Visual decoding of hidden watermark in trained deep neural network,” in 2nd IEEE Conference on Multimedia Information Processing and Retrieval , 2019, pp. 371–374
2019
Earlier work this paper cites.
2019
Earlier work this paper cites.
Z. Li, C. Hu, Y. Zhang, and S. Guo, “How to prove your model belongs to you: A blind-watermark based framework to protect intellectual property of DNN,” in Proceedings of the 35th Annual Computer Security Applications Conference , 2019, pp. 126–137
2019
Earlier work this paper cites.
2019
Cited alongside, same era.
M. Juuti, S. Szyller, S. Marchal, and N. Asokan, “PRADA: Protecting against DNN model stealing attacks,” in IEEE European Symposium on Security and Privacy , 2019, pp. 512–527
2019
Cited alongside, same era.
2019
Cited alongside, same era.
2019
Cited alongside, same era.
Y. Zhang, Y. Jia, X. Wang, Q. Niu, and N. Chen, “DeepTrigger: A watermarking scheme of deep learning models based on chaotic automatic data annotation,” IEEE Access , vol. 8, pp. 213 296–213 305, 2020
2020
Closest in time.
R. Zhu, X. Zhang, M. Shi, and Z. Tang, “Secure neural network watermarking protocol against forging attack,” EURASIP Journal on Image and Video Processing , vol. 2020, no. 1, pp. 1–12, 2020
2020
Closest in time.
E. L. Merrer, P. Pérez, and G. Trédan, “Adversarial frontier stitching for remote neural network watermarking,” Neural Computing and Applications , vol. 32, no. 13, pp. 9233–9244, 2020
2020
Closest in time.
J. Zhao, Q. Hu, G. Liu, X. Ma, F. Chen, and M. M. Hassan, “AFA: Adversarial fingerprinting authentication for deep neural networks,” Computer Communications , vol. 150, pp. 488–497, 2020
2020
Closest in time.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
2019
Cited alongside, same era.
L. Fan, K. Ng, and C. S. Chan, “Rethinking deep neural network ownership verification: Embedding passports to defeat ambiguity attacks,” in Advances in Neural Information Processing Systems , 2019, pp. 4716–4725
2019
Cited alongside, same era.
2019
Cited alongside, same era.
D. Hitaj, B. Hitaj, and L. V. Mancini, “Evasion attacks against watermarking techniques found in MLaaS systems,” in 6th International Conference on Software Defined Systems , 2019, pp. 55–63
2019
Cited alongside, same era.
2019
Cited alongside, same era.
X. Chen, W. Wang, Y. Ding, C. Bender, R. Jia, B. Li, and D. Song, “Leveraging unlabeled data for watermark removal of deep neural networks,” in ICML workshop on Security and Privacy of Machine Learning , 2019, pp. 1–6
2019
Cited alongside, same era.
2019
Cited alongside, same era.
T. Wang and F. Kerschbaum, “Attacks on digital watermarks for deep neural networks,” in IEEE International Conference on Acoustics, Speech and Signal Processing , 2019, pp. 2622–2626
2019
Cited alongside, same era.
2020
Closest in time.
2020
Closest in time.
J. Zhang, D. Chen, J. Liao, W. Zhang, G. Hua, and N. Yu, “Passport-aware normalization for deep model protection,” in Annual Conference on Neural Information Processing Systems , 2020, pp. 1–10
2020
Closest in time.
M. Xue, Z. Wu, C. He, J. Wang, and W. Liu, “Active DNN IP protection: A novel user fingerprint management and DNN authorization control technique,” in IEEE 19th International Conference on Trust, Security and Privacy in Computing and Communications (TrustCom) , 2020, pp. 975–982
2020
Closest in time.
A. Chakraborty, A. Mondal, and A. Srivastava, “Hardware-Assisted intellectual property protection of deep learning models,” in 57th ACM/IEEE Design Automation Conference , 2020, pp. 1–6
2020
Closest in time.
J. Zhang, D. Chen, J. Liao, H. Fang, W. Zhang, W. Zhou, H. Cui, and N. Yu, “Model watermarking for image processing networks,” in Proceedings of the AAAI Conference on Artificial Intelligence , vol. 34, no. 07, 2020, pp. 12 805–12 812
2020
Closest in time.
Y. Quan, H. Teng, Y. Chen, and H. Ji, “Watermarking deep neural networks in image processing,” IEEE Transactions on Neural Networks and Learning Systems , pp. 1–14, 2020, early Access
2020
Closest in time.
2020
Closest in time.
X. Guan, H. Feng, W. Zhang, H. Zhou, J. Zhang, and N. Yu, “Reversible watermarking in deep convolutional neural networks for integrity authentication,” in 28th ACM International Conference on Multimedia , 2020, pp. 2273–2280
2020
Closest in time.
N. Chattopadhyay, C. S. Y. Viroy, and A. Chattopadhyay, “Re-markable: Stealing watermarked neural networks through synthesis,” in 10th International Conference on Security, Privacy, and Applied Cryptography Engineering , 2020, pp. 46–65
2020
Closest in time.
2020
Closest in time.
2020
Closest in time.
2020
Closest in time.
M. Xue, J. Wang, and W. Liu, “DNN intellectual property protection: Taxonomy, attacks and evaluations (invited paper),” in ACM Great Lakes Symposium on VLSI , 2021, pp. 455–460
2021
Closest in time.
2021
Closest in time.
M. Xue, C. Yuan, C. He, J. Wang, and W. Liu, “NaturalAE: Natural and robust physical adversarial examples for object detectors,” Journal of Information Security and Applications , vol. 57, pp. 1–12, 2021
2021
Closest in time.
2021
Closest in time.
2021
Closest in time.