{"id":"https://openalex.org/W7134033020","doi":"https://doi.org/10.48550/arxiv.2603.04696","title":"When Denoising Becomes Unsigning: Theoretical and Empirical Analysis of Watermark Fragility Under Diffusion-Based Image Editing","display_name":"When Denoising Becomes Unsigning: Theoretical and Empirical Analysis of Watermark Fragility Under Diffusion-Based Image Editing","publication_year":2026,"publication_date":"2026-03-05","ids":{"openalex":"https://openalex.org/W7134033020","doi":"https://doi.org/10.48550/arxiv.2603.04696"},"language":null,"primary_location":{"id":"pmh:doi:10.48550/arxiv.2603.04696","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"publisher-specific-oa","license_id":"https://openalex.org/licenses/publisher-specific-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":null,"any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5128224865","display_name":"Fai Gu","orcid":null},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Gu, Fai","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5128258709","display_name":"Qiyu Tang","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Tang, Qiyu","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5128267105","display_name":"Te Wen","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Wen, Te","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5128243198","display_name":"Emily Davis","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Davis, Emily","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5126804886","display_name":"Finn Carter","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Carter, Finn","raw_affiliation_strings":[],"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5128224865"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10388","display_name":"Advanced Steganography and Watermarking Techniques","score":0.7930999994277954,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10388","display_name":"Advanced Steganography and Watermarking Techniques","score":0.7930999994277954,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10775","display_name":"Generative Adversarial Networks and Image Synthesis","score":0.07289999723434448,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.01769999973475933,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/watermark","display_name":"Watermark","score":0.9200000166893005},{"id":"https://openalex.org/keywords/digital-watermarking","display_name":"Digital watermarking","score":0.8536999821662903},{"id":"https://openalex.org/keywords/payload","display_name":"Payload (computing)","score":0.5171999931335449},{"id":"https://openalex.org/keywords/image-editing","display_name":"Image editing","score":0.4950999915599823},{"id":"https://openalex.org/keywords/noise-reduction","display_name":"Noise reduction","score":0.46970000863075256},{"id":"https://openalex.org/keywords/noise","display_name":"Noise (video)","score":0.4627000093460083},{"id":"https://openalex.org/keywords/generative-grammar","display_name":"Generative grammar","score":0.41339999437332153},{"id":"https://openalex.org/keywords/complement","display_name":"Complement (music)","score":0.4106999933719635},{"id":"https://openalex.org/keywords/decoding-methods","display_name":"Decoding methods","score":0.4072999954223633}],"concepts":[{"id":"https://openalex.org/C164112704","wikidata":"https://www.wikidata.org/wiki/Q7974348","display_name":"Watermark","level":3,"score":0.9200000166893005},{"id":"https://openalex.org/C150817343","wikidata":"https://www.wikidata.org/wiki/Q875932","display_name":"Digital watermarking","level":3,"score":0.8536999821662903},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.67330002784729},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5199000239372253},{"id":"https://openalex.org/C134066672","wikidata":"https://www.wikidata.org/wiki/Q1424639","display_name":"Payload (computing)","level":3,"score":0.5171999931335449},{"id":"https://openalex.org/C2776674983","wikidata":"https://www.wikidata.org/wiki/Q545981","display_name":"Image editing","level":3,"score":0.4950999915599823},{"id":"https://openalex.org/C163294075","wikidata":"https://www.wikidata.org/wiki/Q581861","display_name":"Noise reduction","level":2,"score":0.46970000863075256},{"id":"https://openalex.org/C99498987","wikidata":"https://www.wikidata.org/wiki/Q2210247","display_name":"Noise (video)","level":3,"score":0.4627000093460083},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.447299987077713},{"id":"https://openalex.org/C39890363","wikidata":"https://www.wikidata.org/wiki/Q36108","display_name":"Generative grammar","level":2,"score":0.41339999437332153},{"id":"https://openalex.org/C112313634","wikidata":"https://www.wikidata.org/wiki/Q7886648","display_name":"Complement (music)","level":5,"score":0.4106999933719635},{"id":"https://openalex.org/C57273362","wikidata":"https://www.wikidata.org/wiki/Q576722","display_name":"Decoding methods","level":2,"score":0.4072999954223633},{"id":"https://openalex.org/C167966045","wikidata":"https://www.wikidata.org/wiki/Q5532625","display_name":"Generative model","level":3,"score":0.4020000100135803},{"id":"https://openalex.org/C198751489","wikidata":"https://www.wikidata.org/wiki/Q2195","display_name":"JPEG","level":3,"score":0.3865000009536743},{"id":"https://openalex.org/C80191262","wikidata":"https://www.wikidata.org/wiki/Q5477668","display_name":"Fragility","level":2,"score":0.3603000044822693},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.34689998626708984},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.3328999876976013},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.33250001072883606},{"id":"https://openalex.org/C4199805","wikidata":"https://www.wikidata.org/wiki/Q2725903","display_name":"Gaussian noise","level":2,"score":0.30709999799728394},{"id":"https://openalex.org/C189645446","wikidata":"https://www.wikidata.org/wiki/Q350865","display_name":"Mirroring","level":2,"score":0.30250000953674316},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.29600000381469727},{"id":"https://openalex.org/C204241405","wikidata":"https://www.wikidata.org/wiki/Q461499","display_name":"Transformation (genetics)","level":3,"score":0.2930000126361847},{"id":"https://openalex.org/C201779956","wikidata":"https://www.wikidata.org/wiki/Q5426803","display_name":"Ergodicity","level":2,"score":0.287200003862381},{"id":"https://openalex.org/C125411270","wikidata":"https://www.wikidata.org/wiki/Q18653","display_name":"Encoding (memory)","level":2,"score":0.28299999237060547},{"id":"https://openalex.org/C108801101","wikidata":"https://www.wikidata.org/wiki/Q15032","display_name":"Steganography","level":3,"score":0.27140000462532043},{"id":"https://openalex.org/C163716315","wikidata":"https://www.wikidata.org/wiki/Q901177","display_name":"Gaussian","level":2,"score":0.26739999651908875},{"id":"https://openalex.org/C111335779","wikidata":"https://www.wikidata.org/wiki/Q3454686","display_name":"Reduction (mathematics)","level":2,"score":0.2669000029563904},{"id":"https://openalex.org/C2780598303","wikidata":"https://www.wikidata.org/wiki/Q65921492","display_name":"Flexibility (engineering)","level":2,"score":0.25609999895095825}],"mesh":[],"locations_count":2,"locations":[{"id":"pmh:doi:10.48550/arxiv.2603.04696","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"publisher-specific-oa","license_id":"https://openalex.org/licenses/publisher-specific-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},{"id":"doi:10.48550/arxiv.2603.04696","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2603.04696","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:doi:10.48550/arxiv.2603.04696","is_oa":true,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"publisher-specific-oa","license_id":"https://openalex.org/licenses/publisher-specific-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Robust":[0],"invisible":[1],"watermarking":[2,76,203,222],"systems":[3],"aim":[4],"to":[5,82,108,186],"embed":[6],"imperceptible":[7],"payloads":[8,121],"that":[9,78,94,127,155,224],"remain":[10,225],"decodable":[11],"after":[12],"common":[13],"post-processing":[14],"such":[15],"as":[16,123,139,177],"JPEG":[17],"compression,":[18],"cropping,":[19],"and":[20,45,47,69,104,136,170,199,205,217],"additive":[21],"noise.":[22],"In":[23],"parallel,":[24],"diffusion-based":[25,63],"image":[26,111],"editing":[27,64,179],"has":[28],"rapidly":[29],"matured":[30],"into":[31],"a":[32,54,88,101,194],"default":[33],"transformation":[34],"layer":[35],"for":[36,156,221],"modern":[37],"content":[38],"pipelines,":[39],"enabling":[40],"instruction-based":[41],"editing,":[42],"object":[43],"insertion":[44],"composition,":[46],"interactive":[48],"geometric":[49],"manipulation.":[50],"This":[51],"paper":[52],"studies":[53],"subtle":[55],"but":[56],"increasingly":[57],"consequential":[58],"interaction":[59],"between":[60,166],"these":[61],"trends:":[62],"procedures":[65],"may":[66],"unintentionally":[67],"compromise,":[68],"in":[70,100,227],"extreme":[71],"cases":[72],"practically":[73],"bypass,":[74],"robust":[75],"mechanisms":[77],"were":[79],"explicitly":[80],"engineered":[81],"survive":[83],"conventional":[84],"distortions.":[85],"We":[86,147,189],"develop":[87],"unified":[89],"view":[90],"of":[91,159,230],"diffusion":[92,134,207],"editors":[93],"(i)":[95],"inject":[96],"substantial":[97],"Gaussian":[98],"noise":[99],"latent":[102],"space":[103],"(ii)":[105],"project":[106],"back":[107],"the":[109,132,143,163,167,171,178,191,228],"natural":[110],"manifold":[112],"via":[113],"learned":[114],"denoising":[115],"dynamics.":[116],"Under":[117],"this":[118,149],"view,":[119],"watermark":[120,161,168],"behave":[122],"low-energy,":[124],"high-frequency":[125],"signals":[126],"are":[128],"systematically":[129],"attenuated":[130],"by":[131,142],"forward":[133],"step":[135],"then":[137],"treated":[138],"nuisance":[140],"variation":[141],"reverse":[144],"generative":[145,231],"process.":[146],"formalize":[148],"degradation":[150],"using":[151],"information-theoretic":[152],"tools,":[153],"proving":[154],"broad":[157],"classes":[158],"pixel-level":[160],"encoders/decoders":[162],"mutual":[164],"information":[165],"payload":[169],"edited":[172],"output":[173],"decays":[174],"toward":[175],"zero":[176],"strength":[180],"increases,":[181],"yielding":[182],"decoding":[183],"error":[184],"close":[185],"random":[187],"guessing.":[188],"complement":[190],"theory":[192],"with":[193],"realistic":[195],"hypothetical":[196],"experimental":[197],"protocol":[198],"tables":[200],"spanning":[201],"representative":[202,206],"methods":[204],"editors.":[208],"Finally,":[209],"we":[210],"discuss":[211],"ethical":[212],"implications,":[213],"responsible":[214],"disclosure":[215],"norms,":[216],"concrete":[218],"design":[219],"guidelines":[220],"schemes":[223],"meaningful":[226],"era":[229],"transformations.":[232]},"counts_by_year":[],"updated_date":"2026-04-04T16:13:02.066488","created_date":"2026-03-07T00:00:00"}
