{"id":"https://openalex.org/W7131633740","doi":"https://doi.org/10.48550/arxiv.2602.22197","title":"Off-The-Shelf Image-to-Image Models Are All You Need To Defeat Image Protection Schemes","display_name":"Off-The-Shelf Image-to-Image Models Are All You Need To Defeat Image Protection Schemes","publication_year":2026,"publication_date":"2026-02-25","ids":{"openalex":"https://openalex.org/W7131633740","doi":"https://doi.org/10.48550/arxiv.2602.22197"},"language":null,"primary_location":{"id":"pmh:doi:10.48550/arxiv.2602.22197","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":null,"any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5087729003","display_name":"Xavier Pleimling","orcid":null},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Pleimling, Xavier","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5080038295","display_name":"Sifat Muhammad Abdullah","orcid":"https://orcid.org/0009-0008-2285-7490"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Abdullah, Sifat Muhammad","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5009214191","display_name":"Gunjan Balde","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Balde, Gunjan","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5126916682","display_name":"Peng Gao","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Gao, Peng","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5002813297","display_name":"Mainack Mondal","orcid":"https://orcid.org/0000-0003-4317-0184"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Mondal, Mainack","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5012114492","display_name":"Murtuza Jadliwala","orcid":"https://orcid.org/0000-0001-9316-1943"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Jadliwala, Murtuza","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5124004004","display_name":"Bimal Viswanath","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Viswanath, Bimal","raw_affiliation_strings":[],"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5087729003"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9063000082969666,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9063000082969666,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.024700000882148743,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10775","display_name":"Generative Adversarial Networks and Image Synthesis","score":0.021199999377131462,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.5995000004768372},{"id":"https://openalex.org/keywords/mimicry","display_name":"Mimicry","score":0.5080000162124634},{"id":"https://openalex.org/keywords/code","display_name":"Code (set theory)","score":0.4544999897480011},{"id":"https://openalex.org/keywords/generative-grammar","display_name":"Generative grammar","score":0.4050000011920929},{"id":"https://openalex.org/keywords/range","display_name":"Range (aeronautics)","score":0.3847000002861023},{"id":"https://openalex.org/keywords/protection-mechanism","display_name":"Protection mechanism","score":0.37790000438690186},{"id":"https://openalex.org/keywords/threat-model","display_name":"Threat model","score":0.37049999833106995}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7020999789237976},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6230000257492065},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.5995000004768372},{"id":"https://openalex.org/C7863114","wikidata":"https://www.wikidata.org/wiki/Q192627","display_name":"Mimicry","level":2,"score":0.5080000162124634},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.4544999897480011},{"id":"https://openalex.org/C39890363","wikidata":"https://www.wikidata.org/wiki/Q36108","display_name":"Generative grammar","level":2,"score":0.4050000011920929},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.3982999920845032},{"id":"https://openalex.org/C204323151","wikidata":"https://www.wikidata.org/wiki/Q905424","display_name":"Range (aeronautics)","level":2,"score":0.3847000002861023},{"id":"https://openalex.org/C2778717966","wikidata":"https://www.wikidata.org/wiki/Q4189076","display_name":"Protection mechanism","level":3,"score":0.37790000438690186},{"id":"https://openalex.org/C140547941","wikidata":"https://www.wikidata.org/wiki/Q7797194","display_name":"Threat model","level":2,"score":0.37049999833106995},{"id":"https://openalex.org/C112930515","wikidata":"https://www.wikidata.org/wiki/Q4389547","display_name":"Risk analysis (engineering)","level":1,"score":0.3508000075817108},{"id":"https://openalex.org/C59519942","wikidata":"https://www.wikidata.org/wiki/Q650665","display_name":"Drone","level":2,"score":0.3319000005722046},{"id":"https://openalex.org/C89611455","wikidata":"https://www.wikidata.org/wiki/Q6804646","display_name":"Mechanism (biology)","level":2,"score":0.3199999928474426},{"id":"https://openalex.org/C2780586882","wikidata":"https://www.wikidata.org/wiki/Q7520643","display_name":"Simple (philosophy)","level":2,"score":0.3188999891281128},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.30869999527931213},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.2976999878883362},{"id":"https://openalex.org/C77618280","wikidata":"https://www.wikidata.org/wiki/Q1155772","display_name":"Scheme (mathematics)","level":2,"score":0.2827000021934509}],"mesh":[],"locations_count":2,"locations":[{"id":"pmh:doi:10.48550/arxiv.2602.22197","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},{"id":"doi:10.48550/arxiv.2602.22197","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2602.22197","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:doi:10.48550/arxiv.2602.22197","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.41256311535835266,"display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Advances":[0],"in":[1,124,169],"Generative":[2],"AI":[3],"(GenAI)":[4],"have":[5],"led":[6],"to":[7,14,29,31,146],"the":[8,16,110,114,125,143],"development":[9],"of":[10,19,82,128,139],"various":[11],"protection":[12,92,155],"strategies":[13],"prevent":[15],"unauthorized":[17],"use":[18],"images.":[20],"These":[21],"methods":[22],"rely":[23],"on":[24,44],"adding":[25],"imperceptible":[26],"protective":[27,83],"perturbations":[28],"images":[30],"thwart":[32],"misuse":[33],"such":[34],"as":[35,69],"style":[36],"mimicry":[37],"or":[38],"deepfake":[39],"manipulations.":[40],"Although":[41],"previous":[42],"attacks":[43,107,161],"these":[45,100],"protections":[46],"required":[47],"specialized,":[48],"purpose-built":[49],"methods,":[50],"we":[51],"demonstrate":[52],"that":[53,61,132,152],"this":[54,170],"is":[55,167],"no":[56],"longer":[57],"necessary.":[58],"We":[59,141],"show":[60],"off-the-shelf":[62,163],"image-to-image":[63],"GenAI":[64,164],"models":[65],"can":[66],"be":[67,158],"repurposed":[68],"generic":[70],"``denoisers\"":[71],"using":[72],"a":[73,79,119,136],"simple":[74],"text":[75],"prompt,":[76],"effectively":[77],"removing":[78],"wide":[80],"range":[81],"perturbations.":[84],"Across":[85],"8":[86],"case":[87],"studies":[88],"spanning":[89],"6":[90],"diverse":[91],"schemes,":[93],"our":[94],"general-purpose":[95],"attack":[96],"not":[97],"only":[98],"circumvents":[99],"defenses":[101,149],"but":[102],"also":[103],"outperforms":[104],"existing":[105],"specialized":[106],"while":[108],"preserving":[109],"image's":[111],"utility":[112],"for":[113],"adversary.":[115],"Our":[116],"findings":[117],"reveal":[118],"critical":[120],"and":[121,150],"widespread":[122],"vulnerability":[123],"current":[126],"landscape":[127],"image":[129],"protection,":[130],"indicating":[131],"many":[133],"schemes":[134],"provide":[135],"false":[137],"sense":[138],"security.":[140],"stress":[142],"urgent":[144],"need":[145],"develop":[147],"robust":[148],"establish":[151],"any":[153],"future":[154],"mechanism":[156],"must":[157],"benchmarked":[159],"against":[160],"from":[162],"models.":[165],"Code":[166],"available":[168],"repository:":[171],"https://github.com/mlsecviswanath/img2imgdenoiser":[172]},"counts_by_year":[],"updated_date":"2026-04-04T16:13:02.066488","created_date":"2026-02-27T00:00:00"}
