{"id":"https://openalex.org/W4405754385","doi":"https://doi.org/10.1109/tcyb.2024.3514838","title":"Invisible DNN Watermarking Against Model Extraction Attack","display_name":"Invisible DNN Watermarking Against Model Extraction Attack","publication_year":2024,"publication_date":"2024-12-24","ids":{"openalex":"https://openalex.org/W4405754385","doi":"https://doi.org/10.1109/tcyb.2024.3514838","pmid":"https://pubmed.ncbi.nlm.nih.gov/40030655"},"language":"en","primary_location":{"id":"doi:10.1109/tcyb.2024.3514838","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tcyb.2024.3514838","pdf_url":null,"source":{"id":"https://openalex.org/S4210191041","display_name":"IEEE Transactions on Cybernetics","issn_l":"2168-2267","issn":["2168-2267","2168-2275"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Cybernetics","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","pubmed"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100612276","display_name":"Zuping Xi","orcid":"https://orcid.org/0009-0003-4378-9646"},"institutions":[{"id":"https://openalex.org/I157773358","display_name":"Sun Yat-sen University","ror":"https://ror.org/0064kty71","country_code":"CN","type":"education","lineage":["https://openalex.org/I157773358"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Zuping Xi","raw_affiliation_strings":["School of Computer Science and Engineering, the Institute of Artificial Intelligence, the Ministry of Education Key Laboratory of Information Technology, and the Guangdong Province Key Laboratory of Information Security Technology, Sun Yat-sen University, Guangzhou, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, the Institute of Artificial Intelligence, the Ministry of Education Key Laboratory of Information Technology, and the Guangdong Province Key Laboratory of Information Security Technology, Sun Yat-sen University, Guangzhou, China","institution_ids":["https://openalex.org/I157773358"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5002039400","display_name":"Zuomin Qu","orcid":"https://orcid.org/0009-0008-9321-5065"},"institutions":[{"id":"https://openalex.org/I157773358","display_name":"Sun Yat-sen University","ror":"https://ror.org/0064kty71","country_code":"CN","type":"education","lineage":["https://openalex.org/I157773358"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zuomin Qu","raw_affiliation_strings":["School of Computer Science and Engineering, the Institute of Artificial Intelligence, the Ministry of Education Key Laboratory of Information Technology, and the Guangdong Province Key Laboratory of Information Security Technology, Sun Yat-sen University, Guangzhou, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, the Institute of Artificial Intelligence, the Ministry of Education Key Laboratory of Information Technology, and the Guangdong Province Key Laboratory of Information Security Technology, Sun Yat-sen University, Guangzhou, China","institution_ids":["https://openalex.org/I157773358"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5005328001","display_name":"Wei L\u00fc","orcid":"https://orcid.org/0000-0003-0829-5440"},"institutions":[{"id":"https://openalex.org/I157773358","display_name":"Sun Yat-sen University","ror":"https://ror.org/0064kty71","country_code":"CN","type":"education","lineage":["https://openalex.org/I157773358"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wei Lu","raw_affiliation_strings":["School of Computer Science and Engineering, the Institute of Artificial Intelligence, the Ministry of Education Key Laboratory of Information Technology, and the Guangdong Province Key Laboratory of Information Security Technology, Sun Yat-sen University, Guangzhou, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, the Institute of Artificial Intelligence, the Ministry of Education Key Laboratory of Information Technology, and the Guangdong Province Key Laboratory of Information Security Technology, Sun Yat-sen University, Guangzhou, China","institution_ids":["https://openalex.org/I157773358"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102018721","display_name":"Xiangyang Luo","orcid":"https://orcid.org/0000-0001-6062-2950"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Xiangyang Luo","raw_affiliation_strings":["State Key Laboratory of Mathematical Engineering and Advanced Computing, Zhengzhou, China"],"affiliations":[{"raw_affiliation_string":"State Key Laboratory of Mathematical Engineering and Advanced Computing, Zhengzhou, China","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5068837264","display_name":"Xiaochun Cao","orcid":"https://orcid.org/0000-0001-7141-708X"},"institutions":[{"id":"https://openalex.org/I157773358","display_name":"Sun Yat-sen University","ror":"https://ror.org/0064kty71","country_code":"CN","type":"education","lineage":["https://openalex.org/I157773358"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaochun Cao","raw_affiliation_strings":["School of Cyber Science and Technology, Sun Yat-sen University (Shenzhen Campus), Shenzhen, China"],"affiliations":[{"raw_affiliation_string":"School of Cyber Science and Technology, Sun Yat-sen University (Shenzhen Campus), Shenzhen, China","institution_ids":["https://openalex.org/I157773358"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5100612276"],"corresponding_institution_ids":["https://openalex.org/I157773358"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.23800088,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"55","issue":"2","first_page":"800","last_page":"811"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10388","display_name":"Advanced Steganography and Watermarking Techniques","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10388","display_name":"Advanced Steganography and Watermarking Techniques","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9979000091552734,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/digital-watermarking","display_name":"Digital watermarking","score":0.8995159864425659},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.599698543548584},{"id":"https://openalex.org/keywords/extraction","display_name":"Extraction (chemistry)","score":0.5245730876922607},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.47232741117477417},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.3662926256656647},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3634321689605713},{"id":"https://openalex.org/keywords/speech-recognition","display_name":"Speech recognition","score":0.34045201539993286},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.10476541519165039},{"id":"https://openalex.org/keywords/chromatography","display_name":"Chromatography","score":0.07671436667442322},{"id":"https://openalex.org/keywords/chemistry","display_name":"Chemistry","score":0.0602853000164032}],"concepts":[{"id":"https://openalex.org/C150817343","wikidata":"https://www.wikidata.org/wiki/Q875932","display_name":"Digital watermarking","level":3,"score":0.8995159864425659},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.599698543548584},{"id":"https://openalex.org/C4725764","wikidata":"https://www.wikidata.org/wiki/Q844704","display_name":"Extraction (chemistry)","level":2,"score":0.5245730876922607},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.47232741117477417},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.3662926256656647},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3634321689605713},{"id":"https://openalex.org/C28490314","wikidata":"https://www.wikidata.org/wiki/Q189436","display_name":"Speech recognition","level":1,"score":0.34045201539993286},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.10476541519165039},{"id":"https://openalex.org/C43617362","wikidata":"https://www.wikidata.org/wiki/Q170050","display_name":"Chromatography","level":1,"score":0.07671436667442322},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0602853000164032}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tcyb.2024.3514838","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tcyb.2024.3514838","pdf_url":null,"source":{"id":"https://openalex.org/S4210191041","display_name":"IEEE Transactions on Cybernetics","issn_l":"2168-2267","issn":["2168-2267","2168-2275"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Cybernetics","raw_type":"journal-article"},{"id":"pmid:40030655","is_oa":false,"landing_page_url":"https://pubmed.ncbi.nlm.nih.gov/40030655","pdf_url":null,"source":{"id":"https://openalex.org/S4306525036","display_name":"PubMed","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE transactions on cybernetics","raw_type":null}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2434235226","display_name":null,"funder_award_id":"62261160653","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G7798291704","display_name":null,"funder_award_id":"62172435","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G7817342302","display_name":null,"funder_award_id":"U23A20305","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":67,"referenced_works":["https://openalex.org/W1686810756","https://openalex.org/W1821462560","https://openalex.org/W2108598243","https://openalex.org/W2114770744","https://openalex.org/W2183341477","https://openalex.org/W2194775991","https://openalex.org/W2412782625","https://openalex.org/W2579318729","https://openalex.org/W2603766943","https://openalex.org/W2768064608","https://openalex.org/W2774423163","https://openalex.org/W2774644650","https://openalex.org/W2806082141","https://openalex.org/W2808195004","https://openalex.org/W2904169782","https://openalex.org/W2935349488","https://openalex.org/W2962965870","https://openalex.org/W2963037989","https://openalex.org/W2963163009","https://openalex.org/W2963303354","https://openalex.org/W2963363373","https://openalex.org/W2963542245","https://openalex.org/W2964128659","https://openalex.org/W2969695741","https://openalex.org/W2990980946","https://openalex.org/W2997146418","https://openalex.org/W3033502887","https://openalex.org/W3035379805","https://openalex.org/W3083185154","https://openalex.org/W3102733833","https://openalex.org/W3103932910","https://openalex.org/W3111166325","https://openalex.org/W3118608800","https://openalex.org/W3141043040","https://openalex.org/W3156011647","https://openalex.org/W3173775589","https://openalex.org/W3188772578","https://openalex.org/W3194790201","https://openalex.org/W3203430276","https://openalex.org/W3206880386","https://openalex.org/W4211106488","https://openalex.org/W4214522698","https://openalex.org/W4214680449","https://openalex.org/W4226269514","https://openalex.org/W4281686560","https://openalex.org/W4285605767","https://openalex.org/W4288057808","https://openalex.org/W4294000983","https://openalex.org/W4306247941","https://openalex.org/W4319878939","https://openalex.org/W4320005719","https://openalex.org/W4328101204","https://openalex.org/W4360898063","https://openalex.org/W4376481267","https://openalex.org/W4385521786","https://openalex.org/W4393184763","https://openalex.org/W4402916165","https://openalex.org/W6637373629","https://openalex.org/W6684191040","https://openalex.org/W6726275242","https://openalex.org/W6746897123","https://openalex.org/W6747838042","https://openalex.org/W6766821575","https://openalex.org/W6774150056","https://openalex.org/W6787972765","https://openalex.org/W6797414954","https://openalex.org/W6842542430"],"related_works":["https://openalex.org/W2361629745","https://openalex.org/W2107922825","https://openalex.org/W3094285444","https://openalex.org/W1568204688","https://openalex.org/W2381262728","https://openalex.org/W2111592878","https://openalex.org/W1846726187","https://openalex.org/W1593964766","https://openalex.org/W2387614453","https://openalex.org/W2365808414"],"abstract_inverted_index":{"Deep":[0],"neural":[1],"network":[2],"(DNN)":[3],"models":[4],"are":[5,51,66,98],"widely":[6],"used":[7],"in":[8,31,156],"various":[9,194],"fields,":[10],"such":[11],"as":[12,160],"pattern":[13],"recognition":[14],"and":[15,19,61,92,180,185],"natural":[16],"language":[17],"processing,":[18],"provide":[20],"considerable":[21],"commercial":[22],"value":[23],"to":[24,38,53,79,102,113,133,136],"their":[25],"owners.":[26],"Embedding":[27],"a":[28,71],"digital":[29],"watermark":[30,59,90,123],"the":[32,35,43,46,58,62,89,95,115,120,125,139,147,157,166,169,183,189],"model":[33,54,64,82,159,170,195],"allows":[34],"legitimate":[36],"owner":[37],"detect":[39],"unauthorized":[40],"use":[41],"of":[42,122,128,138,168,188],"model.":[44],"However,":[45],"existing":[47],"DNN":[48,74],"watermarking":[49,75,191],"methods":[50],"vulnerable":[52],"extraction":[55,83,196],"attacks":[56,84],"since":[57],"task":[60,65,140,161],"original":[63],"independent.":[67],"In":[68,119],"this":[69],"article,":[70],"novel":[72],"collaborative":[73],"framework":[76,152,192],"is":[77,131],"proposed":[78,190],"defend":[80],"against":[81,193],"by":[85],"establishing":[86],"cooperation":[87],"between":[88],"generation":[91],"embedding.":[93],"Specifically,":[94],"trigger":[96,129,148],"samples":[97,130,142,149],"not":[99],"only":[100],"imperceptible":[101],"ensure":[103],"perceptual":[104],"stealth":[105],"security":[106],"but":[107],"also":[108],"infused":[109],"with":[110],"target-label":[111],"information":[112],"guide":[114],"following":[116],"feature":[117,126,144],"associations.":[118],"process":[121],"embedding,":[124],"representation":[127],"forced":[132],"be":[134,154,172],"similar":[135],"that":[137,165],"distribution":[141,162],"via":[143],"coupling.":[145],"Consequently,":[146],"from":[150],"our":[151],"can":[153,171],"recognized":[155],"stolen":[158],"samples,":[163],"so":[164],"ownership":[167],"successfully":[173],"verified.":[174],"Extensive":[175],"experiments":[176],"on":[177],"CIFAR10,":[178],"CIFAR100,":[179],"ImageNet":[181],"demonstrate":[182],"effectiveness":[184],"superior":[186],"performance":[187],"attacks.":[197]},"counts_by_year":[],"updated_date":"2026-03-27T05:58:40.876381","created_date":"2025-10-10T00:00:00"}
