{"id":"https://openalex.org/W2806082141","doi":"https://doi.org/10.1145/3196494.3196550","title":"Protecting Intellectual Property of Deep Neural Networks with Watermarking","display_name":"Protecting Intellectual Property of Deep Neural Networks with Watermarking","publication_year":2018,"publication_date":"2018-05-29","ids":{"openalex":"https://openalex.org/W2806082141","doi":"https://doi.org/10.1145/3196494.3196550","mag":"2806082141"},"language":"en","primary_location":{"id":"doi:10.1145/3196494.3196550","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3196494.3196550","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2018 on Asia Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101437565","display_name":"Jialong Zhang","orcid":"https://orcid.org/0000-0003-0752-8740"},"institutions":[{"id":"https://openalex.org/I1341412227","display_name":"IBM (United States)","ror":"https://ror.org/05hh8d621","country_code":"US","type":"company","lineage":["https://openalex.org/I1341412227"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Jialong Zhang","raw_affiliation_strings":["IBM Research, Yorktown Heights, NY, USA"],"affiliations":[{"raw_affiliation_string":"IBM Research, Yorktown Heights, NY, USA","institution_ids":["https://openalex.org/I1341412227"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5057478629","display_name":"Zhongshu Gu","orcid":"https://orcid.org/0000-0001-9624-2669"},"institutions":[{"id":"https://openalex.org/I1341412227","display_name":"IBM (United States)","ror":"https://ror.org/05hh8d621","country_code":"US","type":"company","lineage":["https://openalex.org/I1341412227"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Zhongshu Gu","raw_affiliation_strings":["IBM Research, Yorktown Heights, NY, USA"],"affiliations":[{"raw_affiliation_string":"IBM Research, Yorktown Heights, NY, USA","institution_ids":["https://openalex.org/I1341412227"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5037719518","display_name":"Jiyong Jang","orcid":"https://orcid.org/0000-0001-8111-2503"},"institutions":[{"id":"https://openalex.org/I1341412227","display_name":"IBM (United States)","ror":"https://ror.org/05hh8d621","country_code":"US","type":"company","lineage":["https://openalex.org/I1341412227"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Jiyong Jang","raw_affiliation_strings":["IBM Research, Yorktown Heights, NY, USA"],"affiliations":[{"raw_affiliation_string":"IBM Research, Yorktown Heights, NY, USA","institution_ids":["https://openalex.org/I1341412227"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5002406417","display_name":"Hui Wu","orcid":"https://orcid.org/0000-0001-7906-5170"},"institutions":[{"id":"https://openalex.org/I1341412227","display_name":"IBM (United States)","ror":"https://ror.org/05hh8d621","country_code":"US","type":"company","lineage":["https://openalex.org/I1341412227"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Hui Wu","raw_affiliation_strings":["IBM Research, Yorktown Heights, NY, USA"],"affiliations":[{"raw_affiliation_string":"IBM Research, Yorktown Heights, NY, USA","institution_ids":["https://openalex.org/I1341412227"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5028670480","display_name":"Marc Ph. Stoecklin","orcid":null},"institutions":[{"id":"https://openalex.org/I1341412227","display_name":"IBM (United States)","ror":"https://ror.org/05hh8d621","country_code":"US","type":"company","lineage":["https://openalex.org/I1341412227"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Marc Ph. Stoecklin","raw_affiliation_strings":["IBM Research, Yorktown Heights, NY, USA"],"affiliations":[{"raw_affiliation_string":"IBM Research, Yorktown Heights, NY, USA","institution_ids":["https://openalex.org/I1341412227"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101650393","display_name":"Heqing Huang","orcid":"https://orcid.org/0000-0001-8113-3531"},"institutions":[{"id":"https://openalex.org/I1341412227","display_name":"IBM (United States)","ror":"https://ror.org/05hh8d621","country_code":"US","type":"company","lineage":["https://openalex.org/I1341412227"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Heqing Huang","raw_affiliation_strings":["IBM Research, Yorktown Heights, NY, USA"],"affiliations":[{"raw_affiliation_string":"IBM Research, Yorktown Heights, NY, USA","institution_ids":["https://openalex.org/I1341412227"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5040348286","display_name":"Ian Molloy","orcid":null},"institutions":[{"id":"https://openalex.org/I1341412227","display_name":"IBM (United States)","ror":"https://ror.org/05hh8d621","country_code":"US","type":"company","lineage":["https://openalex.org/I1341412227"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Ian Molloy","raw_affiliation_strings":["IBM Research, Yorktown Heights, NY, USA"],"affiliations":[{"raw_affiliation_string":"IBM Research, Yorktown Heights, NY, USA","institution_ids":["https://openalex.org/I1341412227"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5101437565"],"corresponding_institution_ids":["https://openalex.org/I1341412227"],"apc_list":null,"apc_paid":null,"fwci":31.4797,"has_fulltext":false,"cited_by_count":520,"citation_normalized_percentile":{"value":0.99675729,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":98,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"159","last_page":"172"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9958999752998352,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9955999851226807,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.7923895716667175},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7847755551338196},{"id":"https://openalex.org/keywords/intellectual-property","display_name":"Intellectual property","score":0.7335981726646423},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6191337704658508},{"id":"https://openalex.org/keywords/task","display_name":"Task (project management)","score":0.6114693880081177},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.5510653257369995},{"id":"https://openalex.org/keywords/variety","display_name":"Variety (cybernetics)","score":0.540033757686615},{"id":"https://openalex.org/keywords/harm","display_name":"Harm","score":0.5301184058189392},{"id":"https://openalex.org/keywords/property","display_name":"Property (philosophy)","score":0.5226224064826965},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.4892570972442627},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.4659014642238617},{"id":"https://openalex.org/keywords/digital-watermarking","display_name":"Digital watermarking","score":0.4545511305332184},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.36619454622268677},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.31766292452812195},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.11179831624031067}],"concepts":[{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.7923895716667175},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7847755551338196},{"id":"https://openalex.org/C34974158","wikidata":"https://www.wikidata.org/wiki/Q131257","display_name":"Intellectual property","level":2,"score":0.7335981726646423},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6191337704658508},{"id":"https://openalex.org/C2780451532","wikidata":"https://www.wikidata.org/wiki/Q759676","display_name":"Task (project management)","level":2,"score":0.6114693880081177},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.5510653257369995},{"id":"https://openalex.org/C136197465","wikidata":"https://www.wikidata.org/wiki/Q1729295","display_name":"Variety (cybernetics)","level":2,"score":0.540033757686615},{"id":"https://openalex.org/C2777363581","wikidata":"https://www.wikidata.org/wiki/Q15098235","display_name":"Harm","level":2,"score":0.5301184058189392},{"id":"https://openalex.org/C189950617","wikidata":"https://www.wikidata.org/wiki/Q937228","display_name":"Property (philosophy)","level":2,"score":0.5226224064826965},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.4892570972442627},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.4659014642238617},{"id":"https://openalex.org/C150817343","wikidata":"https://www.wikidata.org/wiki/Q875932","display_name":"Digital watermarking","level":3,"score":0.4545511305332184},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.36619454622268677},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.31766292452812195},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.11179831624031067},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C201995342","wikidata":"https://www.wikidata.org/wiki/Q682496","display_name":"Systems engineering","level":1,"score":0.0},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.0},{"id":"https://openalex.org/C111472728","wikidata":"https://www.wikidata.org/wiki/Q9471","display_name":"Epistemology","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3196494.3196550","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3196494.3196550","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2018 on Asia Conference on Computer and Communications Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.5199999809265137,"id":"https://metadata.un.org/sdg/4","display_name":"Quality Education"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":58,"referenced_works":["https://openalex.org/W1524144700","https://openalex.org/W1567800375","https://openalex.org/W1686810756","https://openalex.org/W1845051632","https://openalex.org/W1849277567","https://openalex.org/W1922655562","https://openalex.org/W1972404776","https://openalex.org/W2049562797","https://openalex.org/W2051267297","https://openalex.org/W2064675550","https://openalex.org/W2106069707","https://openalex.org/W2112796928","https://openalex.org/W2120400964","https://openalex.org/W2129376942","https://openalex.org/W2129453388","https://openalex.org/W2130949882","https://openalex.org/W2133958774","https://openalex.org/W2135459805","https://openalex.org/W2135535566","https://openalex.org/W2141504882","https://openalex.org/W2143612262","https://openalex.org/W2149933564","https://openalex.org/W2155800262","https://openalex.org/W2155893237","https://openalex.org/W2160815625","https://openalex.org/W2161647295","https://openalex.org/W2166212353","https://openalex.org/W2169111714","https://openalex.org/W2171239818","https://openalex.org/W2171803110","https://openalex.org/W2194775991","https://openalex.org/W2271840356","https://openalex.org/W2310919327","https://openalex.org/W2481800796","https://openalex.org/W2504108613","https://openalex.org/W2524778423","https://openalex.org/W2535690855","https://openalex.org/W2540366045","https://openalex.org/W2557283755","https://openalex.org/W2563117427","https://openalex.org/W2579318729","https://openalex.org/W2590796488","https://openalex.org/W2591882872","https://openalex.org/W2604319603","https://openalex.org/W2618043096","https://openalex.org/W2618530766","https://openalex.org/W2707890836","https://openalex.org/W2734358244","https://openalex.org/W2748789698","https://openalex.org/W2753783305","https://openalex.org/W2768064608","https://openalex.org/W2963042536","https://openalex.org/W2963857521","https://openalex.org/W2964217848","https://openalex.org/W2964318098","https://openalex.org/W3118608800","https://openalex.org/W3142067920","https://openalex.org/W4205241946"],"related_works":["https://openalex.org/W2361629745","https://openalex.org/W2107922825","https://openalex.org/W3094285444","https://openalex.org/W4377865163","https://openalex.org/W3193857078","https://openalex.org/W2888956734","https://openalex.org/W3000197790","https://openalex.org/W4315865067","https://openalex.org/W2979433843","https://openalex.org/W3208304128"],"abstract_inverted_index":{"Deep":[0],"learning":[1,43,73,101],"technologies,":[2],"which":[3,49],"are":[4],"the":[5,68,96,108],"key":[6],"components":[7],"of":[8,25,54,70,99,107],"state-of-the-art":[9],"Artificial":[10],"Intelligence":[11],"(AI)":[12],"services,":[13],"have":[14],"shown":[15],"great":[16],"success":[17],"in":[18],"providing":[19],"human-level":[20],"capabilities":[21],"for":[22],"a":[23,40,46,51,92],"variety":[24],"tasks,":[26],"such":[27],"as":[28],"visual":[29],"analysis,":[30],"speech":[31],"recognition,":[32],"and":[33,37,60,67,80,103],"natural":[34],"language":[35],"processing":[36],"etc.":[38],"Building":[39],"production-level":[41],"deep":[42,72,100],"model":[44,84,109],"is":[45,88],"non-trivial":[47],"task,":[48],"requires":[50],"large":[52],"amount":[53],"training":[55],"data,":[56],"powerful":[57],"computing":[58],"resources,":[59],"human":[61],"expertises.":[62],"Therefore,":[63,86],"illegitimate":[64],"reproducing,":[65],"distribution,":[66],"derivation":[69],"proprietary":[71],"models":[74,102],"can":[75],"lead":[76],"to":[77,83,90,94],"copyright":[78],"infringement":[79],"economic":[81],"harm":[82],"creators.":[85],"it":[87],"essential":[89],"devise":[91],"technique":[93],"protect":[95],"intellectual":[97],"property":[98],"enable":[104],"external":[105],"verification":[106],"ownership.":[110]},"counts_by_year":[{"year":2026,"cited_by_count":13},{"year":2025,"cited_by_count":74},{"year":2024,"cited_by_count":84},{"year":2023,"cited_by_count":79},{"year":2022,"cited_by_count":84},{"year":2021,"cited_by_count":91},{"year":2020,"cited_by_count":57},{"year":2019,"cited_by_count":32},{"year":2018,"cited_by_count":6}],"updated_date":"2026-03-31T07:56:22.981413","created_date":"2025-10-10T00:00:00"}
