{"id":"https://openalex.org/W7164845281","doi":"https://doi.org/10.1145/3805622.3810742","title":"ComMark: Covert and Robust Black-Box Model Watermarking with Compressed Samples","display_name":"ComMark: Covert and Robust Black-Box Model Watermarking with Compressed Samples","publication_year":2026,"publication_date":"2026-06-15","ids":{"openalex":"https://openalex.org/W7164845281","doi":"https://doi.org/10.1145/3805622.3810742"},"language":null,"primary_location":{"id":"doi:10.1145/3805622.3810742","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3805622.3810742","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2026 International Conference on Multimedia Retrieval","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://doi.org/10.1145/3805622.3810742","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5000074603","display_name":"Yi Yang","orcid":"https://orcid.org/0000-0002-4091-8532"},"institutions":[{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yunfei Yang","raw_affiliation_strings":["Institute of Information Engineering, Chinese Academy of Sciences, Beijing, China; State Key Laboratory of Cyberspace Security Defense, Beijing, China and School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China"],"raw_orcid":"https://orcid.org/0009-0001-0338-8528","affiliations":[{"raw_affiliation_string":"Institute of Information Engineering, Chinese Academy of Sciences, Beijing, China; State Key Laboratory of Cyberspace Security Defense, Beijing, China and School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210156404"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101407251","display_name":"Xiaojun Chen","orcid":"https://orcid.org/0000-0003-0362-847X"},"institutions":[{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaojun Chen","raw_affiliation_strings":["Institute of Information Engineering, Chinese Academy of Sciences, Beijing, China; State Key Laboratory of Cyberspace Security Defense, Beijing, China and School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0003-0362-847X","affiliations":[{"raw_affiliation_string":"Institute of Information Engineering, Chinese Academy of Sciences, Beijing, China; State Key Laboratory of Cyberspace Security Defense, Beijing, China and School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210156404"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100567246","display_name":"Zhendong Zhao","orcid":"https://orcid.org/0000-0003-0003-019X"},"institutions":[{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhendong Zhao","raw_affiliation_strings":["Institute of Information Engineering, Chinese Academy of Sciences, Beijing, China; State Key Laboratory of Cyberspace Security Defense, Beijing, China and School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0003-0003-019X","affiliations":[{"raw_affiliation_string":"Institute of Information Engineering, Chinese Academy of Sciences, Beijing, China; State Key Laboratory of Cyberspace Security Defense, Beijing, China and School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210156404"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5016175345","display_name":"Yu Zhou","orcid":"https://orcid.org/0000-0003-4188-9953"},"institutions":[{"id":"https://openalex.org/I205237279","display_name":"Nankai University","ror":"https://ror.org/01y1kjr75","country_code":"CN","type":"education","lineage":["https://openalex.org/I205237279"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yu Zhou","raw_affiliation_strings":["College of Computer Science, Nankai University, Tianjin, China"],"raw_orcid":"https://orcid.org/0000-0003-4188-9953","affiliations":[{"raw_affiliation_string":"College of Computer Science, Nankai University, Tianjin, China","institution_ids":["https://openalex.org/I205237279"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5024344221","display_name":"Xiaoyan Gu","orcid":"https://orcid.org/0000-0003-0673-0058"},"institutions":[{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaoyan Gu","raw_affiliation_strings":["Institute of Information Engineering, Chinese Academy of Sciences, Beijing, China; State Key Laboratory of Cyberspace Security Defense, Beijing, China and School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0003-0673-0058","affiliations":[{"raw_affiliation_string":"Institute of Information Engineering, Chinese Academy of Sciences, Beijing, China; State Key Laboratory of Cyberspace Security Defense, Beijing, China and School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210156404"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5056924576","display_name":"Juan Cao","orcid":"https://orcid.org/0000-0002-7857-1546"},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210090176","display_name":"Institute of Computing Technology","ror":"https://ror.org/0090r4d87","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210090176"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Juan Cao","raw_affiliation_strings":["Institute of Computing Technology, Chinese Academy of Sciences, Beijing, China"],"raw_orcid":"https://orcid.org/0000-0002-7857-1546","affiliations":[{"raw_affiliation_string":"Institute of Computing Technology, Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210090176","https://openalex.org/I19820366"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.94963946,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"1936","last_page":"1945"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.8172000050544739,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.8172000050544739,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.03849999979138374,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.025100000202655792,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/digital-watermarking","display_name":"Digital watermarking","score":0.933899998664856},{"id":"https://openalex.org/keywords/watermark","display_name":"Watermark","score":0.9046000242233276},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.7678999900817871},{"id":"https://openalex.org/keywords/covert","display_name":"Covert","score":0.7181000113487244},{"id":"https://openalex.org/keywords/intellectual-property","display_name":"Intellectual property","score":0.43560001254081726},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.39079999923706055},{"id":"https://openalex.org/keywords/property","display_name":"Property (philosophy)","score":0.3490999937057495}],"concepts":[{"id":"https://openalex.org/C150817343","wikidata":"https://www.wikidata.org/wiki/Q875932","display_name":"Digital watermarking","level":3,"score":0.933899998664856},{"id":"https://openalex.org/C164112704","wikidata":"https://www.wikidata.org/wiki/Q7974348","display_name":"Watermark","level":3,"score":0.9046000242233276},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.7678999900817871},{"id":"https://openalex.org/C2779338814","wikidata":"https://www.wikidata.org/wiki/Q5179285","display_name":"Covert","level":2,"score":0.7181000113487244},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7128000259399414},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5465999841690063},{"id":"https://openalex.org/C34974158","wikidata":"https://www.wikidata.org/wiki/Q131257","display_name":"Intellectual property","level":2,"score":0.43560001254081726},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.4115000069141388},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.39079999923706055},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.36550000309944153},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.35019999742507935},{"id":"https://openalex.org/C189950617","wikidata":"https://www.wikidata.org/wiki/Q937228","display_name":"Property (philosophy)","level":2,"score":0.3490999937057495},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.3133000135421753},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.30379998683929443},{"id":"https://openalex.org/C2777042071","wikidata":"https://www.wikidata.org/wiki/Q6509304","display_name":"Leakage (economics)","level":2,"score":0.2799000144004822},{"id":"https://openalex.org/C103278499","wikidata":"https://www.wikidata.org/wiki/Q254465","display_name":"Similarity (geometry)","level":3,"score":0.27810001373291016},{"id":"https://openalex.org/C3073032","wikidata":"https://www.wikidata.org/wiki/Q15912075","display_name":"Information hiding","level":3,"score":0.2732999920845032},{"id":"https://openalex.org/C71745522","wikidata":"https://www.wikidata.org/wiki/Q2476929","display_name":"Confidentiality","level":2,"score":0.26669999957084656},{"id":"https://openalex.org/C51632099","wikidata":"https://www.wikidata.org/wiki/Q3985153","display_name":"Training set","level":2,"score":0.26420000195503235}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3805622.3810742","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3805622.3810742","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2026 International Conference on Multimedia Retrieval","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3805622.3810742","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3805622.3810742","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2026 International Conference on Multimedia Retrieval","raw_type":"proceedings-article"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.7686948776245117,"display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":47,"referenced_works":["https://openalex.org/W2029596906","https://openalex.org/W2031614119","https://openalex.org/W2040903332","https://openalex.org/W2076513987","https://openalex.org/W2114770744","https://openalex.org/W2117876524","https://openalex.org/W2133665775","https://openalex.org/W2135480257","https://openalex.org/W2138621090","https://openalex.org/W2194775991","https://openalex.org/W2325939864","https://openalex.org/W2603766943","https://openalex.org/W2806082141","https://openalex.org/W2952608669","https://openalex.org/W2962785568","https://openalex.org/W2963303354","https://openalex.org/W2964128659","https://openalex.org/W2990980946","https://openalex.org/W2997717738","https://openalex.org/W3132191748","https://openalex.org/W3156011647","https://openalex.org/W4214851787","https://openalex.org/W4251884961","https://openalex.org/W4288057808","https://openalex.org/W4292794790","https://openalex.org/W4312648479","https://openalex.org/W4313023779","https://openalex.org/W4320005719","https://openalex.org/W4363678803","https://openalex.org/W4376139366","https://openalex.org/W4382317564","https://openalex.org/W4385270611","https://openalex.org/W4386075642","https://openalex.org/W4387185380","https://openalex.org/W4387846550","https://openalex.org/W4387967949","https://openalex.org/W4390658962","https://openalex.org/W4393153909","https://openalex.org/W4393160907","https://openalex.org/W4393195438","https://openalex.org/W4399743769","https://openalex.org/W4401109681","https://openalex.org/W4401438525","https://openalex.org/W4402264472","https://openalex.org/W4403791716","https://openalex.org/W4405114800","https://openalex.org/W4406458681"],"related_works":[],"abstract_inverted_index":{"The":[0],"rapid":[1],"advancement":[2],"of":[3],"deep":[4],"learning":[5],"has":[6,45],"turned":[7],"models":[8,26],"into":[9],"highly":[10],"valuable":[11],"assets":[12],"due":[13],"to":[14,30,68,75,109],"their":[15],"reliance":[16],"on":[17],"massive":[18],"data":[19],"and":[20,32,60,78,80,113,133,144,155],"costly":[21],"training":[22],"processes.":[23],"However,":[24],"these":[25],"are":[27],"increasingly":[28],"vulnerable":[29],"leakage":[31],"theft,":[33],"highlighting":[34],"the":[35,73,83],"critical":[36],"need":[37],"for":[38,57,89],"robust":[39],"intellectual":[40],"property":[41],"protection.":[42],"Model":[43],"watermarking":[44,53,103],"emerged":[46],"as":[47],"an":[48],"effective":[49],"solution,":[50],"with":[51],"black-box":[52,64,101],"gaining":[54],"significant":[55],"attention":[56],"its":[58],"practicality":[59],"flexibility.":[61],"Nonetheless,":[62],"existing":[63],"methods":[65],"often":[66],"fail":[67],"better":[69],"balance":[70],"covertness":[71,154],"(hiding":[72],"watermark":[74,84,115,125],"prevent":[76],"detection":[77],"forgery)":[79],"robustness":[81],"(ensuring":[82],"resists":[85],"removal)\u2014two":[86],"essential":[87],"properties":[88],"real-world":[90],"copyright":[91],"verification.":[92],"In":[93],"this":[94],"paper,":[95],"we":[96],"propose":[97],"ComMark,":[98],"a":[99,134],"novel":[100],"model":[102],"framework":[104],"that":[105,147],"leverages":[106],"frequency-domain":[107],"transformations":[108],"generate":[110],"compressed,":[111],"covert,":[112],"attack-resistant":[114],"samples":[116],"by":[117],"filtering":[118],"out":[119],"high-frequency":[120],"information.":[121],"To":[122],"further":[123],"enhance":[124],"robustness,":[126],"our":[127],"method":[128],"incorporates":[129],"simulated":[130],"attack":[131],"scenarios":[132],"similarity":[135],"loss":[136],"during":[137],"training.":[138],"Comprehensive":[139],"evaluations":[140],"across":[141],"diverse":[142],"datasets":[143],"architectures":[145],"demonstrate":[146],"ComMark":[148],"achieves":[149],"state-of-the-art":[150],"performance":[151],"in":[152],"both":[153],"robustness.":[156]},"counts_by_year":[],"updated_date":"2026-06-16T07:37:23.134862","created_date":"2026-06-16T00:00:00"}
