{"id":"https://openalex.org/W7129018533","doi":"https://doi.org/10.1145/3773966.3777930","title":"Federated Watermarking of Deep Neural Networks with Distributed Verification","display_name":"Federated Watermarking of Deep Neural Networks with Distributed Verification","publication_year":2026,"publication_date":"2026-02-16","ids":{"openalex":"https://openalex.org/W7129018533","doi":"https://doi.org/10.1145/3773966.3777930"},"language":null,"primary_location":{"id":"doi:10.1145/3773966.3777930","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3773966.3777930","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Nineteenth ACM International Conference on Web Search and Data Mining","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://doi.org/10.1145/3773966.3777930","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5104252692","display_name":"Sheng-Po Tseng","orcid":null},"institutions":[{"id":"https://openalex.org/I25846049","display_name":"National Tsing Hua University","ror":"https://ror.org/00zdnkx70","country_code":"TW","type":"education","lineage":["https://openalex.org/I25846049"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Sheng-Po Tseng","raw_affiliation_strings":["National Tsing Hua University, Hsinchu, Taiwan"],"raw_orcid":"https://orcid.org/0009-0009-6755-233X","affiliations":[{"raw_affiliation_string":"National Tsing Hua University, Hsinchu, Taiwan","institution_ids":["https://openalex.org/I25846049"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5006608753","display_name":"Lo\u2010Yao Yeh","orcid":"https://orcid.org/0000-0002-9764-0455"},"institutions":[{"id":"https://openalex.org/I22265921","display_name":"National Central University","ror":"https://ror.org/00944ve71","country_code":"TW","type":"education","lineage":["https://openalex.org/I22265921"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Lo-Yao Yeh","raw_affiliation_strings":["National Central University, Taoyuan, Taiwan"],"raw_orcid":"https://orcid.org/0000-0002-9764-0455","affiliations":[{"raw_affiliation_string":"National Central University, Taoyuan, Taiwan","institution_ids":["https://openalex.org/I22265921"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5086037426","display_name":"Hui-Ju Hung","orcid":"https://orcid.org/0000-0003-2277-6021"},"institutions":[{"id":"https://openalex.org/I22265921","display_name":"National Central University","ror":"https://ror.org/00944ve71","country_code":"TW","type":"education","lineage":["https://openalex.org/I22265921"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Hui-Ju Hung","raw_affiliation_strings":["National Central University, Taoyuan, Taiwan"],"raw_orcid":"https://orcid.org/0000-0003-2277-6021","affiliations":[{"raw_affiliation_string":"National Central University, Taoyuan, Taiwan","institution_ids":["https://openalex.org/I22265921"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100994525","display_name":"Chih Ya Shen","orcid":null},"institutions":[{"id":"https://openalex.org/I25846049","display_name":"National Tsing Hua University","ror":"https://ror.org/00zdnkx70","country_code":"TW","type":"education","lineage":["https://openalex.org/I25846049"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Chih-Ya Shen","raw_affiliation_strings":["National Tsing Hua University, Hsinchu, Taiwan"],"raw_orcid":"https://orcid.org/0000-0002-0377-7945","affiliations":[{"raw_affiliation_string":"National Tsing Hua University, Hsinchu, Taiwan","institution_ids":["https://openalex.org/I25846049"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.20607071,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"629","last_page":"639"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9639999866485596,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9639999866485596,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.0052999998442828655,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.0038999998942017555,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/digital-watermarking","display_name":"Digital watermarking","score":0.8640000224113464},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.7473999857902527},{"id":"https://openalex.org/keywords/watermark","display_name":"Watermark","score":0.5720000267028809},{"id":"https://openalex.org/keywords/intellectual-property","display_name":"Intellectual property","score":0.5223000049591064},{"id":"https://openalex.org/keywords/distributed-database","display_name":"Distributed database","score":0.41679999232292175},{"id":"https://openalex.org/keywords/confidentiality","display_name":"Confidentiality","score":0.3765999972820282},{"id":"https://openalex.org/keywords/erasure","display_name":"Erasure","score":0.37229999899864197},{"id":"https://openalex.org/keywords/bridge","display_name":"Bridge (graph theory)","score":0.37119999527931213},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.36309999227523804}],"concepts":[{"id":"https://openalex.org/C150817343","wikidata":"https://www.wikidata.org/wiki/Q875932","display_name":"Digital watermarking","level":3,"score":0.8640000224113464},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8033999800682068},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.7473999857902527},{"id":"https://openalex.org/C164112704","wikidata":"https://www.wikidata.org/wiki/Q7974348","display_name":"Watermark","level":3,"score":0.5720000267028809},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5564000010490417},{"id":"https://openalex.org/C34974158","wikidata":"https://www.wikidata.org/wiki/Q131257","display_name":"Intellectual property","level":2,"score":0.5223000049591064},{"id":"https://openalex.org/C70061542","wikidata":"https://www.wikidata.org/wiki/Q989016","display_name":"Distributed database","level":2,"score":0.41679999232292175},{"id":"https://openalex.org/C71745522","wikidata":"https://www.wikidata.org/wiki/Q2476929","display_name":"Confidentiality","level":2,"score":0.3765999972820282},{"id":"https://openalex.org/C2778790127","wikidata":"https://www.wikidata.org/wiki/Q484885","display_name":"Erasure","level":2,"score":0.37229999899864197},{"id":"https://openalex.org/C100776233","wikidata":"https://www.wikidata.org/wiki/Q2532492","display_name":"Bridge (graph theory)","level":2,"score":0.37119999527931213},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.36309999227523804},{"id":"https://openalex.org/C2780385302","wikidata":"https://www.wikidata.org/wiki/Q367158","display_name":"Protocol (science)","level":3,"score":0.34689998626708984},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.3465999960899353},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.34279999136924744},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.3330000042915344},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.3264999985694885},{"id":"https://openalex.org/C120314980","wikidata":"https://www.wikidata.org/wiki/Q180634","display_name":"Distributed computing","level":1,"score":0.3264000117778778},{"id":"https://openalex.org/C140547941","wikidata":"https://www.wikidata.org/wiki/Q7797194","display_name":"Threat model","level":2,"score":0.3149000108242035},{"id":"https://openalex.org/C2992525071","wikidata":"https://www.wikidata.org/wiki/Q50818671","display_name":"Federated learning","level":2,"score":0.31130000948905945},{"id":"https://openalex.org/C24885549","wikidata":"https://www.wikidata.org/wiki/Q339678","display_name":"Distributed data store","level":2,"score":0.305400013923645},{"id":"https://openalex.org/C158338273","wikidata":"https://www.wikidata.org/wiki/Q2154943","display_name":"Homomorphic encryption","level":3,"score":0.29919999837875366},{"id":"https://openalex.org/C189950617","wikidata":"https://www.wikidata.org/wiki/Q937228","display_name":"Property (philosophy)","level":2,"score":0.2946000099182129},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.29179999232292175},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.2743000090122223},{"id":"https://openalex.org/C93996380","wikidata":"https://www.wikidata.org/wiki/Q44127","display_name":"Server","level":2,"score":0.2615000009536743},{"id":"https://openalex.org/C67186912","wikidata":"https://www.wikidata.org/wiki/Q367664","display_name":"Data modeling","level":2,"score":0.26010000705718994},{"id":"https://openalex.org/C33884865","wikidata":"https://www.wikidata.org/wiki/Q1254335","display_name":"Cryptographic protocol","level":3,"score":0.2535000145435333}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3773966.3777930","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3773966.3777930","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Nineteenth ACM International Conference on Web Search and Data Mining","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3773966.3777930","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3773966.3777930","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Nineteenth ACM International Conference on Web Search and Data Mining","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":26,"referenced_works":["https://openalex.org/W2106111489","https://openalex.org/W2137091430","https://openalex.org/W2194775991","https://openalex.org/W2286666002","https://openalex.org/W2512971201","https://openalex.org/W2579318729","https://openalex.org/W2605246672","https://openalex.org/W2806082141","https://openalex.org/W2883780447","https://openalex.org/W2963163009","https://openalex.org/W2985954225","https://openalex.org/W2986833982","https://openalex.org/W2995191368","https://openalex.org/W3156011647","https://openalex.org/W3179216274","https://openalex.org/W3204946808","https://openalex.org/W3215453688","https://openalex.org/W4225999490","https://openalex.org/W4226014375","https://openalex.org/W4246698901","https://openalex.org/W4285603108","https://openalex.org/W4304091654","https://openalex.org/W4367047423","https://openalex.org/W4382317564","https://openalex.org/W4386736827","https://openalex.org/W4392384393"],"related_works":[],"abstract_inverted_index":{"With":[0],"the":[1,102,112],"advancement":[2],"of":[3,126],"deep":[4],"learning,":[5],"DNNs":[6],"have":[7],"been":[8],"widely":[9],"deployed":[10],"across":[11],"diverse":[12],"domains.":[13],"Model-as-a-Service":[14],"(MaaS)":[15],"platforms":[16],"allow":[17],"enterprises":[18],"to":[19,94,115],"commercialize":[20],"well-trained":[21],"models,":[22],"which":[23],"are":[24],"built":[25],"through":[26,144],"extensive":[27],"data":[28],"collection":[29],"and":[30,41,99,120,141,147],"substantial":[31],"computational":[32],"investment.":[33],"Consequently,":[34],"protecting":[35],"these":[36],"models":[37],"from":[38],"unauthorized":[39],"use":[40],"intellectual":[42],"property":[43],"(IP)":[44],"theft":[45],"has":[46,51],"become":[47],"critical.":[48],"While":[49],"watermarking":[50],"emerged":[52],"as":[53],"a":[54,84,123],"prominent":[55],"IP":[56],"protection":[57],"technique,":[58],"most":[59],"existing":[60],"approaches":[61],"target":[62],"centralized":[63],"settings,":[64],"leaving":[65],"federated":[66],"learning":[67],"(FL)":[68],"scenarios":[69],"largely":[70],"underexplored.":[71],"To":[72,107],"bridge":[73],"this":[74,110],"gap,":[75],"we":[76],"propose":[77],"Federated":[78],"Watermarking":[79],"with":[80,135],"Distributed":[81],"Verification":[82],"(FWDV),":[83],"novel":[85],"framework":[86],"tailored":[87],"for":[88],"FL.":[89],"FWDV":[90,132],"enables":[91],"each":[92],"client":[93],"independently":[95],"verify":[96],"watermark":[97],"ownership":[98],"jointly":[100],"defend":[101],"model":[103,139],"against":[104,122],"erasure":[105],"attempts.":[106],"our":[108],"knowledge,":[109],"is":[111],"first":[113],"work":[114],"achieve":[116],"both":[117],"distributed":[118],"verification":[119],"robustness":[121],"broad":[124],"spectrum":[125],"attacks.":[127],"Extensive":[128],"experiments":[129],"demonstrate":[130],"that":[131],"embeds":[133],"watermarks":[134],"minimal":[136],"impact":[137],"on":[138],"utility":[140],"resists":[142],"removal":[143],"fine-tuning,":[145],"pruning,":[146],"distillation.":[148]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-02-17T00:00:00"}
