{"id":"https://openalex.org/W7128703388","doi":"https://doi.org/10.48550/arxiv.2602.10765","title":"Collaborative Threshold Watermarking","display_name":"Collaborative Threshold Watermarking","publication_year":2026,"publication_date":"2026-02-11","ids":{"openalex":"https://openalex.org/W7128703388","doi":"https://doi.org/10.48550/arxiv.2602.10765"},"language":null,"primary_location":{"id":"pmh:doi:10.48550/arxiv.2602.10765","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":null,"any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5033321060","display_name":"Tameem Bakr","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Bakr, Tameem","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5125688586","display_name":"Anish Ambreth","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Ambreth, Anish","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5086633938","display_name":"Nils Lukas","orcid":"https://orcid.org/0009-0001-5891-9154"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Lukas, Nils","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.7824000120162964,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.7824000120162964,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.08730000257492065,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.013000000268220901,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/digital-watermarking","display_name":"Digital watermarking","score":0.9100000262260437},{"id":"https://openalex.org/keywords/watermark","display_name":"Watermark","score":0.8931000232696533},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.7167999744415283},{"id":"https://openalex.org/keywords/suspect","display_name":"Suspect","score":0.5327000021934509},{"id":"https://openalex.org/keywords/protocol","display_name":"Protocol (science)","score":0.5254999995231628},{"id":"https://openalex.org/keywords/scale","display_name":"Scale (ratio)","score":0.4982999861240387},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.39730000495910645}],"concepts":[{"id":"https://openalex.org/C150817343","wikidata":"https://www.wikidata.org/wiki/Q875932","display_name":"Digital watermarking","level":3,"score":0.9100000262260437},{"id":"https://openalex.org/C164112704","wikidata":"https://www.wikidata.org/wiki/Q7974348","display_name":"Watermark","level":3,"score":0.8931000232696533},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7646999955177307},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.7167999744415283},{"id":"https://openalex.org/C2778223634","wikidata":"https://www.wikidata.org/wiki/Q224952","display_name":"Suspect","level":2,"score":0.5327000021934509},{"id":"https://openalex.org/C2780385302","wikidata":"https://www.wikidata.org/wiki/Q367158","display_name":"Protocol (science)","level":3,"score":0.5254999995231628},{"id":"https://openalex.org/C2778755073","wikidata":"https://www.wikidata.org/wiki/Q10858537","display_name":"Scale (ratio)","level":2,"score":0.4982999861240387},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.47429999709129333},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4706000089645386},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.43290001153945923},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.39730000495910645},{"id":"https://openalex.org/C77618280","wikidata":"https://www.wikidata.org/wiki/Q1155772","display_name":"Scheme (mathematics)","level":2,"score":0.3582000136375427},{"id":"https://openalex.org/C2779843651","wikidata":"https://www.wikidata.org/wiki/Q7390335","display_name":"SIGNAL (programming language)","level":2,"score":0.3294000029563904},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.2883000075817108},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.2842999994754791},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.2833000123500824},{"id":"https://openalex.org/C3087436","wikidata":"https://www.wikidata.org/wiki/Q1386603","display_name":"Secret sharing","level":3,"score":0.266400009393692},{"id":"https://openalex.org/C132964779","wikidata":"https://www.wikidata.org/wiki/Q2110223","display_name":"Raw data","level":2,"score":0.26570001244544983},{"id":"https://openalex.org/C71745522","wikidata":"https://www.wikidata.org/wiki/Q2476929","display_name":"Confidentiality","level":2,"score":0.2632000148296356}],"mesh":[],"locations_count":2,"locations":[{"id":"pmh:doi:10.48550/arxiv.2602.10765","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},{"id":"doi:10.48550/arxiv.2602.10765","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2602.10765","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:doi:10.48550/arxiv.2602.10765","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"In":[0],"federated":[1],"learning":[2],"(FL),":[3],"$K$":[4,58],"clients":[5,21,52,78,93,117],"jointly":[6,31],"train":[7],"a":[8,30,37,81,101],"model":[9],"without":[10,126],"sharing":[11],"raw":[12],"data.":[13,191],"Because":[14],"each":[15],"participant":[16],"invests":[17],"data":[18],"and":[19,69,99,121,140,150,171],"compute,":[20],"need":[22],"mechanisms":[23],"to":[24,67,186],"later":[25],"prove":[26],"the":[27,41,65,72,96,106,130,137,174,189],"provenance":[28],"of":[29,89,113,188],"trained":[32],"model.":[33,103],"Model":[34],"watermarking":[35],"embeds":[36],"hidden":[38],"signal":[39],"in":[40,129,136],"weights,":[42],"but":[43],"naive":[44],"approaches":[45],"either":[46],"do":[47],"not":[48],"scale":[49,165],"with":[50,167],"many":[51],"as":[53,57,153,155],"per-client":[54],"watermarks":[55],"dilute":[56],"grows,":[59],"or":[60],"give":[61],"any":[62],"individual":[63],"client":[64],"ability":[66],"verify":[68,100],"potentially":[70],"remove":[71],"watermark.":[73],"We":[74,104,132],"introduce":[75],"$(t,K)$-threshold":[76],"watermarking:":[77],"collaboratively":[79],"embed":[80],"shared":[82],"watermark":[83,97,107,161],"during":[84],"training,":[85],"while":[86],"only":[87],"coalitions":[88,112],"at":[90,164,195],"least":[91],"$t$":[92,116],"can":[94,123],"reconstruct":[95,119],"key":[98,108],"suspect":[102],"secret-share":[105],"$\u03c4$":[109,128],"so":[110],"that":[111],"fewer":[114],"than":[115],"cannot":[118],"it,":[120],"verification":[122],"be":[124],"performed":[125],"revealing":[127],"clear.":[131],"instantiate":[133],"our":[134],"protocol":[135],"white-box":[138],"setting":[139],"evaluate":[141],"it":[142],"on":[143,147],"image":[144],"classification":[145],"tasks":[146],"both":[148],"IID":[149],"non-IID":[151],"partitions,":[152],"well":[154],"language":[156],"models":[157],"fine-tuning":[158,183],"setting.":[159],"Our":[160],"remains":[162],"detectable":[163],"($K=128$)":[166],"minimal":[168],"accuracy":[169],"loss":[170],"stays":[172],"above":[173],"detection":[175],"threshold":[176],"($z\\ge":[177],"4$)":[178],"under":[179],"attacks":[180],"including":[181],"adaptive":[182],"using":[184],"up":[185],"20%":[187],"training":[190],"Code":[192],"is":[193],"available":[194],"https://github.com/tameemalaa/collaborative-threshold-watermark.":[196]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-02-13T00:00:00"}
