{"id":"https://openalex.org/W2935349488","doi":"https://doi.org/10.1145/3297858.3304051","title":"DeepSigns","display_name":"DeepSigns","publication_year":2019,"publication_date":"2019-04-04","ids":{"openalex":"https://openalex.org/W2935349488","doi":"https://doi.org/10.1145/3297858.3304051","mag":"2935349488"},"language":"en","primary_location":{"id":"doi:10.1145/3297858.3304051","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3297858.3304051","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3297858.3304051","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Twenty-Fourth International Conference on Architectural Support for Programming Languages and Operating Systems","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3297858.3304051","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5035073741","display_name":"Bita Darvish Rouhani","orcid":"https://orcid.org/0000-0002-8412-4320"},"institutions":[{"id":"https://openalex.org/I36258959","display_name":"University of California, San Diego","ror":"https://ror.org/0168r3w48","country_code":"US","type":"education","lineage":["https://openalex.org/I36258959"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Bita Darvish Rouhani","raw_affiliation_strings":["University of California, San Diego, San Diego, CA, USA"],"affiliations":[{"raw_affiliation_string":"University of California, San Diego, San Diego, CA, USA","institution_ids":["https://openalex.org/I36258959"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101449721","display_name":"Huili Chen","orcid":"https://orcid.org/0000-0001-5828-2942"},"institutions":[{"id":"https://openalex.org/I36258959","display_name":"University of California, San Diego","ror":"https://ror.org/0168r3w48","country_code":"US","type":"education","lineage":["https://openalex.org/I36258959"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Huili Chen","raw_affiliation_strings":["University of California, San Diego, San Diego, CA, USA"],"affiliations":[{"raw_affiliation_string":"University of California, San Diego, San Diego, CA, USA","institution_ids":["https://openalex.org/I36258959"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5019931011","display_name":"Farinaz Koushanfar","orcid":"https://orcid.org/0000-0003-0798-3794"},"institutions":[{"id":"https://openalex.org/I36258959","display_name":"University of California, San Diego","ror":"https://ror.org/0168r3w48","country_code":"US","type":"education","lineage":["https://openalex.org/I36258959"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Farinaz Koushanfar","raw_affiliation_strings":["University of California, San Diego, San Diego, CA, USA"],"affiliations":[{"raw_affiliation_string":"University of California, San Diego, San Diego, CA, USA","institution_ids":["https://openalex.org/I36258959"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5035073741"],"corresponding_institution_ids":["https://openalex.org/I36258959"],"apc_list":null,"apc_paid":null,"fwci":14.1615,"has_fulltext":true,"cited_by_count":220,"citation_normalized_percentile":{"value":0.9907975,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":98,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"485","last_page":"497"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9980999827384949,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8108862638473511},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.6183096766471863},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6122313141822815},{"id":"https://openalex.org/keywords/probabilistic-logic","display_name":"Probabilistic logic","score":0.513624370098114},{"id":"https://openalex.org/keywords/process","display_name":"Process (computing)","score":0.5103177428245544},{"id":"https://openalex.org/keywords/convolutional-neural-network","display_name":"Convolutional neural network","score":0.5095956325531006},{"id":"https://openalex.org/keywords/overhead","display_name":"Overhead (engineering)","score":0.45977720618247986},{"id":"https://openalex.org/keywords/edge-device","display_name":"Edge device","score":0.44757795333862305},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.42293471097946167},{"id":"https://openalex.org/keywords/transformation","display_name":"Transformation (genetics)","score":0.41900634765625}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8108862638473511},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.6183096766471863},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6122313141822815},{"id":"https://openalex.org/C49937458","wikidata":"https://www.wikidata.org/wiki/Q2599292","display_name":"Probabilistic logic","level":2,"score":0.513624370098114},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.5103177428245544},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.5095956325531006},{"id":"https://openalex.org/C2779960059","wikidata":"https://www.wikidata.org/wiki/Q7113681","display_name":"Overhead (engineering)","level":2,"score":0.45977720618247986},{"id":"https://openalex.org/C138236772","wikidata":"https://www.wikidata.org/wiki/Q25098575","display_name":"Edge device","level":3,"score":0.44757795333862305},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.42293471097946167},{"id":"https://openalex.org/C204241405","wikidata":"https://www.wikidata.org/wiki/Q461499","display_name":"Transformation (genetics)","level":3,"score":0.41900634765625},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3297858.3304051","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3297858.3304051","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3297858.3304051","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Twenty-Fourth International Conference on Architectural Support for Programming Languages and Operating Systems","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3297858.3304051","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3297858.3304051","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3297858.3304051","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Twenty-Fourth International Conference on Architectural Support for Programming Languages and Operating Systems","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W2935349488.pdf","grobid_xml":"https://content.openalex.org/works/W2935349488.grobid-xml"},"referenced_works_count":56,"referenced_works":["https://openalex.org/W195213822","https://openalex.org/W398859631","https://openalex.org/W1485029172","https://openalex.org/W1521839253","https://openalex.org/W1599779438","https://openalex.org/W1686810756","https://openalex.org/W1732796048","https://openalex.org/W1836465849","https://openalex.org/W1899249567","https://openalex.org/W1934184906","https://openalex.org/W1945616565","https://openalex.org/W2108598243","https://openalex.org/W2116467012","https://openalex.org/W2119144962","https://openalex.org/W2123045220","https://openalex.org/W2150341604","https://openalex.org/W2152240488","https://openalex.org/W2161647295","https://openalex.org/W2286365479","https://openalex.org/W2294710185","https://openalex.org/W2346062110","https://openalex.org/W2488255893","https://openalex.org/W2557283755","https://openalex.org/W2579318729","https://openalex.org/W2595840341","https://openalex.org/W2603766943","https://openalex.org/W2625592091","https://openalex.org/W2768064608","https://openalex.org/W2786379237","https://openalex.org/W2787075213","https://openalex.org/W2798956872","https://openalex.org/W2888062646","https://openalex.org/W2899533082","https://openalex.org/W2905891400","https://openalex.org/W2919115771","https://openalex.org/W2934927394","https://openalex.org/W2949117887","https://openalex.org/W2963207607","https://openalex.org/W2963674932","https://openalex.org/W2963819344","https://openalex.org/W2964137095","https://openalex.org/W2964299589","https://openalex.org/W3105676597","https://openalex.org/W3118608800","https://openalex.org/W4205947740","https://openalex.org/W4238976768","https://openalex.org/W4293580221","https://openalex.org/W4297573953","https://openalex.org/W4297813615","https://openalex.org/W4299301436","https://openalex.org/W6637874473","https://openalex.org/W6639736602","https://openalex.org/W6683546891","https://openalex.org/W6733645847","https://openalex.org/W6760385162","https://openalex.org/W6967208686"],"related_works":["https://openalex.org/W4293226380","https://openalex.org/W4375867731","https://openalex.org/W2943623134","https://openalex.org/W2611989081","https://openalex.org/W4226493464","https://openalex.org/W4312417841","https://openalex.org/W3193565141","https://openalex.org/W3133861977","https://openalex.org/W3167935049","https://openalex.org/W3029198973"],"abstract_inverted_index":{"Deep":[0],"Learning":[1],"(DL)":[2],"models":[3,41,48,55,74],"have":[4],"created":[5],"a":[6,43,127,164,217,247,258],"paradigm":[7],"shift":[8],"in":[9,16,35,114,145,160],"our":[10],"ability":[11],"to":[12,26,38,78,88,91,109,176,251],"comprehend":[13],"raw":[14],"data":[15],"various":[17,199],"important":[18],"fields,":[19],"ranging":[20],"from":[21],"intelligence":[22],"warfare":[23],"and":[24,29,86,141,192,201,209,231,242],"healthcare":[25],"autonomous":[27],"transportation":[28],"automated":[30],"manufacturing.":[31],"A":[32],"practical":[33],"concern,":[34],"the":[36,47,83,93,100,115,121,151,169,174,179,189],"rush":[37],"adopt":[39],"DL":[40,54,117,165,184,221],"as":[42,126,261,263],"service,":[44],"is":[45,124],"protecting":[46],"against":[49],"Intellectual":[50],"Property":[51],"(IP)":[52],"infringement.":[53],"are":[56,75],"commonly":[57],"built":[58],"by":[59,148],"allocating":[60],"substantial":[61],"computational":[62],"resources":[63],"that":[64,106,130],"process":[65],"vast":[66],"amounts":[67],"of":[68,82,156,163,220],"proprietary":[69],"training":[70,185,193,253,259],"data.":[71],"The":[72,143],"resulting":[73],"therefore":[76],"considered":[77],"be":[79,89,132],"an":[80],"IP":[81,103],"model":[84,118,175,205,207],"builder":[85],"need":[87],"protected":[90],"preserve":[92],"owner's":[94,180],"competitive":[95],"advantage.":[96],"We":[97,212,244],"propose":[98],"DeepSigns,":[99],"first":[101],"end-to-end":[102],"protection":[104],"framework":[105],"enables":[107],"developers":[108],"systematically":[110],"insert":[111],"digital":[112],"watermarks":[113],"target":[116],"before":[119],"distributing":[120],"model.":[122,166],"DeepSigns":[123,146,167,195,214],"encapsulated":[125],"high-level":[128],"wrapper":[129],"can":[131,196],"leveraged":[133],"within":[134,173],"common":[135],"deep":[136],"learning":[137,150],"frameworks":[138],"including":[139,204,223],"TensorFlow":[140],"PyTorch.":[142],"libraries":[144],"work":[147],"dynamically":[149],"Probability":[152],"Density":[153],"Function":[154],"(pdf)":[155],"activation":[157],"maps":[158],"obtained":[159],"different":[161],"layers":[162],"uses":[168],"low":[170,262],"probabilistic":[171],"regions":[172],"gradually":[177],"embed":[178],"signature":[181],"(watermark)":[182],"during":[183],"while":[186],"minimally":[187],"affecting":[188],"overall":[190],"accuracy":[191],"overhead.":[194],"demonstrably":[197],"withstand":[198],"removal":[200],"transformation":[202],"attacks,":[203],"pruning,":[206],"fine-tuning,":[208],"watermark":[210],"overwriting.":[211],"evaluate":[213],"performance":[215],"on":[216],"wide":[218,224],"variety":[219],"architectures":[222],"residual":[225],"convolution":[226],"neural":[227,255],"networks,":[228],"multi-layer":[229],"perceptrons,":[230],"long":[232],"short-term":[233],"memory":[234],"models.":[235],"Our":[236],"extensive":[237],"evaluations":[238],"corroborate":[239],"DeepSigns'":[240],"effectiveness":[241],"applicability.":[243],"further":[245],"provide":[246],"highly-optimized":[248],"accompanying":[249],"API":[250],"facilitate":[252],"watermarked":[254],"networks":[256],"with":[257],"overhead":[260],"2.2%.":[264]},"counts_by_year":[{"year":2026,"cited_by_count":7},{"year":2025,"cited_by_count":48},{"year":2024,"cited_by_count":40},{"year":2023,"cited_by_count":27},{"year":2022,"cited_by_count":33},{"year":2021,"cited_by_count":34},{"year":2020,"cited_by_count":25},{"year":2019,"cited_by_count":6}],"updated_date":"2026-04-23T09:07:50.710637","created_date":"2019-04-11T00:00:00"}
