{"id":"https://openalex.org/W4308235957","doi":"https://doi.org/10.1109/icip46576.2022.9897413","title":"Neural Network Fragile watermarking With No Model Performance Degradation","display_name":"Neural Network Fragile watermarking With No Model Performance Degradation","publication_year":2022,"publication_date":"2022-10-16","ids":{"openalex":"https://openalex.org/W4308235957","doi":"https://doi.org/10.1109/icip46576.2022.9897413"},"language":"en","primary_location":{"id":"doi:10.1109/icip46576.2022.9897413","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icip46576.2022.9897413","pdf_url":null,"source":{"id":"https://openalex.org/S4363607719","display_name":"2022 IEEE International Conference on Image Processing (ICIP)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2022 IEEE International Conference on Image Processing (ICIP)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5035489942","display_name":"Zhaoxia Yin","orcid":"https://orcid.org/0000-0003-0387-4806"},"institutions":[{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhaoxia Yin","raw_affiliation_strings":["East China Normal University,School of Communication and Electronic Engineering,Shanghai,China","School of Communication and Electronic Engineering, East China Normal University, Shanghai, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"East China Normal University,School of Communication and Electronic Engineering,Shanghai,China","institution_ids":["https://openalex.org/I66867065"]},{"raw_affiliation_string":"School of Communication and Electronic Engineering, East China Normal University, Shanghai, China","institution_ids":["https://openalex.org/I66867065"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5103168519","display_name":"Heng Yin","orcid":"https://orcid.org/0000-0003-3927-0932"},"institutions":[{"id":"https://openalex.org/I143868143","display_name":"Anhui University","ror":"https://ror.org/05th6yx34","country_code":"CN","type":"education","lineage":["https://openalex.org/I143868143"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Heng Yin","raw_affiliation_strings":["Anhui University,Anhui Provincial Key Laboratory of Multimodal Cognitive Computation","Anhui Provincial Key Laboratory of Multimodal Cognitive Computation, Anhui University"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Anhui University,Anhui Provincial Key Laboratory of Multimodal Cognitive Computation","institution_ids":["https://openalex.org/I143868143"]},{"raw_affiliation_string":"Anhui Provincial Key Laboratory of Multimodal Cognitive Computation, Anhui University","institution_ids":["https://openalex.org/I143868143"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5071724015","display_name":"Xinpeng Zhang","orcid":"https://orcid.org/0000-0001-5867-1315"},"institutions":[{"id":"https://openalex.org/I24943067","display_name":"Fudan University","ror":"https://ror.org/013q1eq08","country_code":"CN","type":"education","lineage":["https://openalex.org/I24943067"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xinpeng Zhang","raw_affiliation_strings":["Fudan University,School of Computer Science and Technology,Shanghai,China","School of Computer Science and Technology, Fudan University, Shanghai, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Fudan University,School of Computer Science and Technology,Shanghai,China","institution_ids":["https://openalex.org/I24943067"]},{"raw_affiliation_string":"School of Computer Science and Technology, Fudan University, Shanghai, China","institution_ids":["https://openalex.org/I24943067"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.8687,"has_fulltext":false,"cited_by_count":21,"citation_normalized_percentile":{"value":0.87892923,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":98,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"3958","last_page":"3962"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10775","display_name":"Generative Adversarial Networks and Image Synthesis","score":0.9979000091552734,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.994700014591217,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.815567672252655},{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.8025473952293396},{"id":"https://openalex.org/keywords/digital-watermarking","display_name":"Digital watermarking","score":0.7943126559257507},{"id":"https://openalex.org/keywords/classifier","display_name":"Classifier (UML)","score":0.6757744550704956},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.6328619718551636},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5595638751983643},{"id":"https://openalex.org/keywords/fine-tuning","display_name":"Fine-tuning","score":0.5175506472587585},{"id":"https://openalex.org/keywords/process","display_name":"Process (computing)","score":0.4875173270702362},{"id":"https://openalex.org/keywords/generative-model","display_name":"Generative model","score":0.48482266068458557},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.44039052724838257},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.41981542110443115},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.39012521505355835},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.38456135988235474},{"id":"https://openalex.org/keywords/generative-grammar","display_name":"Generative grammar","score":0.2528552711009979},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.22393295168876648}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.815567672252655},{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.8025473952293396},{"id":"https://openalex.org/C150817343","wikidata":"https://www.wikidata.org/wiki/Q875932","display_name":"Digital watermarking","level":3,"score":0.7943126559257507},{"id":"https://openalex.org/C95623464","wikidata":"https://www.wikidata.org/wiki/Q1096149","display_name":"Classifier (UML)","level":2,"score":0.6757744550704956},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.6328619718551636},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5595638751983643},{"id":"https://openalex.org/C157524613","wikidata":"https://www.wikidata.org/wiki/Q2828883","display_name":"Fine-tuning","level":2,"score":0.5175506472587585},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.4875173270702362},{"id":"https://openalex.org/C167966045","wikidata":"https://www.wikidata.org/wiki/Q5532625","display_name":"Generative model","level":3,"score":0.48482266068458557},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.44039052724838257},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.41981542110443115},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.39012521505355835},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.38456135988235474},{"id":"https://openalex.org/C39890363","wikidata":"https://www.wikidata.org/wiki/Q36108","display_name":"Generative grammar","level":2,"score":0.2528552711009979},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.22393295168876648},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/icip46576.2022.9897413","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icip46576.2022.9897413","pdf_url":null,"source":{"id":"https://openalex.org/S4363607719","display_name":"2022 IEEE International Conference on Image Processing (ICIP)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2022 IEEE International Conference on Image Processing (ICIP)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.46000000834465027,"id":"https://metadata.un.org/sdg/15","display_name":"Life in Land"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":24,"referenced_works":["https://openalex.org/W1902237438","https://openalex.org/W1980287119","https://openalex.org/W2117130368","https://openalex.org/W2121393355","https://openalex.org/W2147768505","https://openalex.org/W2194775991","https://openalex.org/W2748789698","https://openalex.org/W2896457183","https://openalex.org/W2948833786","https://openalex.org/W2958992432","https://openalex.org/W2963542245","https://openalex.org/W2972441196","https://openalex.org/W3092793669","https://openalex.org/W3094502228","https://openalex.org/W3111925745","https://openalex.org/W3118608800","https://openalex.org/W3175121854","https://openalex.org/W3196643401","https://openalex.org/W4294643831","https://openalex.org/W4320013936","https://openalex.org/W6743581629","https://openalex.org/W6745560452","https://openalex.org/W6784333009","https://openalex.org/W6787972765"],"related_works":["https://openalex.org/W4320031223","https://openalex.org/W4200629851","https://openalex.org/W4281902577","https://openalex.org/W4309417370","https://openalex.org/W4292107232","https://openalex.org/W3009072493","https://openalex.org/W4386080799","https://openalex.org/W4281570223","https://openalex.org/W4387355971","https://openalex.org/W3165571652"],"abstract_inverted_index":{"Deep":[0],"neural":[1,29,48],"networks":[2],"are":[3,79],"vulnerable":[4],"to":[5,24,75,81,98],"malicious":[6,26,106,132],"fine-tuning":[7,27,83,107,133],"attacks":[8],"such":[9],"as":[10],"data":[11],"poisoning":[12],"and":[13,72,115,121],"backdoor":[14],"attacks.":[15],"Therefore,":[16],"in":[17],"recent":[18],"research,":[19],"it":[20,33],"is":[21],"proposed":[22,126],"how":[23],"detect":[25,130],"of":[28,39,60,84,91,101],"network":[30,49],"models.":[31],"However,":[32],"usually":[34],"negatively":[35],"affects":[36],"the":[37,40,58,68,82,85,89,95,125],"performance":[38,55,137],"protected":[41],"model.":[42],"Thus,":[43],"we":[44,62,93],"propose":[45],"a":[46,64],"novel":[47],"fragile":[50,103],"watermarking":[51],"with":[52,67,134],"no":[53,135],"model":[54,66,131,136],"degradation.":[56,138],"In":[57,88],"process":[59,90],"watermarking,":[61],"train":[63],"generative":[65],"specific":[69],"loss":[70],"function":[71],"secret":[73,113],"key":[74],"generate":[76],"triggers":[77],"that":[78,124],"sensitive":[80],"target":[86],"classifier.":[87],"verifying,":[92],"adopt":[94],"watermarked":[96],"classifier":[97],"get":[99],"labels":[100],"each":[102],"trigger.":[104],"Then,":[105],"can":[108,128],"be":[109],"detected":[110],"by":[111],"comparing":[112],"keys":[114],"labels.":[116],"Experiments":[117],"on":[118],"classic":[119],"datasets":[120],"classifiers":[122],"show":[123],"method":[127],"effectively":[129]},"counts_by_year":[{"year":2026,"cited_by_count":3},{"year":2025,"cited_by_count":7},{"year":2024,"cited_by_count":6},{"year":2023,"cited_by_count":5}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2022-11-09T00:00:00"}
