{"id":"https://openalex.org/W7084124202","doi":"https://doi.org/10.1109/avss65446.2025.11149824","title":"Invisible Backdoor Triggers in Image Editing Model via Deep Watermarking","display_name":"Invisible Backdoor Triggers in Image Editing Model via Deep Watermarking","publication_year":2025,"publication_date":"2025-08-11","ids":{"openalex":"https://openalex.org/W7084124202","doi":"https://doi.org/10.1109/avss65446.2025.11149824"},"language":"en","primary_location":{"id":"doi:10.1109/avss65446.2025.11149824","is_oa":false,"landing_page_url":"https://doi.org/10.1109/avss65446.2025.11149824","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE International Conference on Advanced Visual and Signal-Based Systems (AVSS)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":null,"display_name":"Yu-Feng Chen","orcid":null},"institutions":[{"id":"https://openalex.org/I4210086894","display_name":"Research Center for Information Technology Innovation, Academia Sinica","ror":"https://ror.org/000zgvm20","country_code":"TW","type":"facility","lineage":["https://openalex.org/I4210086894","https://openalex.org/I84653119"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Yu-Feng Chen","raw_affiliation_strings":["Research Center for Information Technology Innovation, Academia Sinica"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Research Center for Information Technology Innovation, Academia Sinica","institution_ids":["https://openalex.org/I4210086894"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Tzuhsuan Huang","orcid":null},"institutions":[{"id":"https://openalex.org/I4210086894","display_name":"Research Center for Information Technology Innovation, Academia Sinica","ror":"https://ror.org/000zgvm20","country_code":"TW","type":"facility","lineage":["https://openalex.org/I4210086894","https://openalex.org/I84653119"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Tzuhsuan Huang","raw_affiliation_strings":["Research Center for Information Technology Innovation, Academia Sinica"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Research Center for Information Technology Innovation, Academia Sinica","institution_ids":["https://openalex.org/I4210086894"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Pin-Yen Chiu","orcid":null},"institutions":[{"id":"https://openalex.org/I4210086894","display_name":"Research Center for Information Technology Innovation, Academia Sinica","ror":"https://ror.org/000zgvm20","country_code":"TW","type":"facility","lineage":["https://openalex.org/I4210086894","https://openalex.org/I84653119"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Pin-Yen Chiu","raw_affiliation_strings":["Research Center for Information Technology Innovation, Academia Sinica"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Research Center for Information Technology Innovation, Academia Sinica","institution_ids":["https://openalex.org/I4210086894"]}]},{"author_position":"last","author":{"id":null,"display_name":"Jun-Cheng Chen","orcid":null},"institutions":[{"id":"https://openalex.org/I4210086894","display_name":"Research Center for Information Technology Innovation, Academia Sinica","ror":"https://ror.org/000zgvm20","country_code":"TW","type":"facility","lineage":["https://openalex.org/I4210086894","https://openalex.org/I84653119"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Jun-Cheng Chen","raw_affiliation_strings":["Research Center for Information Technology Innovation, Academia Sinica"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Research Center for Information Technology Innovation, Academia Sinica","institution_ids":["https://openalex.org/I4210086894"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.7588,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.91147205,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":true,"primary_topic":{"id":"https://openalex.org/T12157","display_name":"Geochemistry and Geologic Mapping","score":0.7109000086784363,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12157","display_name":"Geochemistry and Geologic Mapping","score":0.7109000086784363,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T13067","display_name":"Geological Modeling and Analysis","score":0.029600000008940697,"subfield":{"id":"https://openalex.org/subfields/1906","display_name":"Geochemistry and Petrology"},"field":{"id":"https://openalex.org/fields/19","display_name":"Earth and Planetary Sciences"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T14311","display_name":"Electrical and Electromagnetic Research","score":0.01489999983459711,"subfield":{"id":"https://openalex.org/subfields/3107","display_name":"Atomic and Molecular Physics, and Optics"},"field":{"id":"https://openalex.org/fields/31","display_name":"Physics and Astronomy"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.996999979019165},{"id":"https://openalex.org/keywords/image-editing","display_name":"Image editing","score":0.7860999703407288},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.6055999994277954},{"id":"https://openalex.org/keywords/digital-watermarking","display_name":"Digital watermarking","score":0.6029999852180481},{"id":"https://openalex.org/keywords/watermark","display_name":"Watermark","score":0.5353000164031982},{"id":"https://openalex.org/keywords/leverage","display_name":"Leverage (statistics)","score":0.4641000032424927},{"id":"https://openalex.org/keywords/code","display_name":"Code (set theory)","score":0.4106999933719635}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.996999979019165},{"id":"https://openalex.org/C2776674983","wikidata":"https://www.wikidata.org/wiki/Q545981","display_name":"Image editing","level":3,"score":0.7860999703407288},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7077000141143799},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.6055999994277954},{"id":"https://openalex.org/C150817343","wikidata":"https://www.wikidata.org/wiki/Q875932","display_name":"Digital watermarking","level":3,"score":0.6029999852180481},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5781000256538391},{"id":"https://openalex.org/C164112704","wikidata":"https://www.wikidata.org/wiki/Q7974348","display_name":"Watermark","level":3,"score":0.5353000164031982},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.48899999260902405},{"id":"https://openalex.org/C153083717","wikidata":"https://www.wikidata.org/wiki/Q6535263","display_name":"Leverage (statistics)","level":2,"score":0.4641000032424927},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.4106999933719635},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.38909998536109924},{"id":"https://openalex.org/C2987933465","wikidata":"https://www.wikidata.org/wiki/Q141130","display_name":"Image manipulation","level":3,"score":0.3504999876022339},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.3393999934196472},{"id":"https://openalex.org/C40305131","wikidata":"https://www.wikidata.org/wiki/Q2616305","display_name":"Obfuscation","level":2,"score":0.3328999876976013},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.32120001316070557},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3127000033855438},{"id":"https://openalex.org/C9417928","wikidata":"https://www.wikidata.org/wiki/Q1070689","display_name":"Image processing","level":3,"score":0.3037000000476837},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.2847999930381775},{"id":"https://openalex.org/C2780581891","wikidata":"https://www.wikidata.org/wiki/Q15738686","display_name":"Copy protection","level":4,"score":0.25209999084472656}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/avss65446.2025.11149824","is_oa":false,"landing_page_url":"https://doi.org/10.1109/avss65446.2025.11149824","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE International Conference on Advanced Visual and Signal-Based Systems (AVSS)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320321041","display_name":"Academia Sinica","ror":"https://ror.org/05bxb3784"},{"id":"https://openalex.org/F4320331164","display_name":"National Science and Technology Council","ror":"https://ror.org/00wnb9798"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":7,"referenced_works":["https://openalex.org/W3034856584","https://openalex.org/W3143336910","https://openalex.org/W4214680449","https://openalex.org/W4385815557","https://openalex.org/W4386072042","https://openalex.org/W4386072220","https://openalex.org/W4386076215"],"related_works":[],"abstract_inverted_index":{"Diffusion":[0],"models":[1,111],"have":[2,15],"achieved":[3],"remarkable":[4],"progress":[5],"in":[6,22,27,38,54,170],"both":[7],"image":[8,48,55,64,81,99],"generation":[9,49],"and":[10],"editing.":[11,83],"However,":[12],"recent":[13],"studies":[14,62],"revealed":[16],"their":[17],"vulnerability":[18],"to":[19,78,112,122,142],"backdoor":[20,52,117,129,173],"attacks,":[21],"which":[23,70],"specific":[24],"patterns":[25],"embedded":[26],"the":[28,32,47,60,79,98,124,127,143,153,163,167,177],"input":[29,80],"can":[30],"manipulate":[31],"model\u2019s":[33],"behavior.":[34],"Most":[35],"existing":[36],"research":[37],"this":[39,85],"area":[40],"has":[41],"proposed":[42,154],"attack":[43,91,158,174],"frameworks":[44],"focused":[45],"on":[46],"pipeline,":[50],"leaving":[51],"attacks":[53],"editing":[56,100,137],"relatively":[57],"unexplored.":[58],"Among":[59],"few":[61],"targeting":[63],"editing,":[65],"most":[66],"utilize":[67],"visible":[68],"triggers,":[69],"are":[71],"impractical":[72],"because":[73],"they":[74],"introduce":[75],"noticeable":[76],"alterations":[77],"before":[82],"In":[84,161],"paper,":[86],"we":[87],"propose":[88],"a":[89],"novel":[90],"framework":[92],"that":[93],"embeds":[94],"invisible":[95],"triggers":[96],"into":[97],"process":[101],"via":[102],"poisoned":[103],"training":[104],"data.":[105],"We":[106],"leverage":[107],"off-the-shelf":[108],"deep":[109],"watermarking":[110,151],"encode":[113],"imperceptible":[114],"watermarks":[115],"as":[116],"triggers.":[118],"Our":[119],"goal":[120],"is":[121,184],"make":[123],"model":[125],"produce":[126],"predefined":[128],"target":[130],"when":[131],"it":[132],"receives":[133],"watermarked":[134],"inputs,":[135],"while":[136],"clean":[138],"images":[139],"normally":[140],"according":[141],"given":[144],"prompt.":[145],"With":[146],"extensive":[147],"experiments":[148],"across":[149],"different":[150],"models,":[152],"method":[155],"achieves":[156],"promising":[157],"success":[159],"rates.":[160],"addition,":[162],"analysis":[164],"results":[165],"of":[166,172,179],"watermark":[168],"characteristics":[169],"term":[171],"further":[175],"support":[176],"effectiveness":[178],"our":[180],"approach.":[181],"The":[182],"code":[183],"available":[185],"at":[186],"https://github.com/aiiu-lab/BackdoorImageEditing.":[187]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
