{"id":"https://openalex.org/W7137222070","doi":"https://doi.org/10.48550/arxiv.2603.12949","title":"Editing Away the Evidence: Diffusion-Based Image Manipulation and the Failure Modes of Robust Watermarking","display_name":"Editing Away the Evidence: Diffusion-Based Image Manipulation and the Failure Modes of Robust Watermarking","publication_year":2026,"publication_date":"2026-03-13","ids":{"openalex":"https://openalex.org/W7137222070","doi":"https://doi.org/10.48550/arxiv.2603.12949"},"language":null,"primary_location":{"id":"doi:10.48550/arxiv.2603.12949","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2603.12949","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.48550/arxiv.2603.12949","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5129506335","display_name":"Qian Qi","orcid":null},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Qi, Qian","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5079497496","display_name":"Jiangyun Tang","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Tang, Jiangyun","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5129636675","display_name":"Jim Lee","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Lee, Jim","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5129496460","display_name":"Emily Davis","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Davis, Emily","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5129484021","display_name":"Finn Carter","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Carter, Finn","raw_affiliation_strings":[],"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5129506335"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10388","display_name":"Advanced Steganography and Watermarking Techniques","score":0.6825000047683716,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10388","display_name":"Advanced Steganography and Watermarking Techniques","score":0.6825000047683716,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.10339999943971634,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10775","display_name":"Generative Adversarial Networks and Image Synthesis","score":0.05299999937415123,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/digital-watermarking","display_name":"Digital watermarking","score":0.9016000032424927},{"id":"https://openalex.org/keywords/watermark","display_name":"Watermark","score":0.7810999751091003},{"id":"https://openalex.org/keywords/image-editing","display_name":"Image editing","score":0.6238999962806702},{"id":"https://openalex.org/keywords/noise","display_name":"Noise (video)","score":0.5871999859809875},{"id":"https://openalex.org/keywords/embedding","display_name":"Embedding","score":0.5812000036239624},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.5760999917984009},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.4668000042438507},{"id":"https://openalex.org/keywords/generative-model","display_name":"Generative model","score":0.43540000915527344}],"concepts":[{"id":"https://openalex.org/C150817343","wikidata":"https://www.wikidata.org/wiki/Q875932","display_name":"Digital watermarking","level":3,"score":0.9016000032424927},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.788100004196167},{"id":"https://openalex.org/C164112704","wikidata":"https://www.wikidata.org/wiki/Q7974348","display_name":"Watermark","level":3,"score":0.7810999751091003},{"id":"https://openalex.org/C2776674983","wikidata":"https://www.wikidata.org/wiki/Q545981","display_name":"Image editing","level":3,"score":0.6238999962806702},{"id":"https://openalex.org/C99498987","wikidata":"https://www.wikidata.org/wiki/Q2210247","display_name":"Noise (video)","level":3,"score":0.5871999859809875},{"id":"https://openalex.org/C41608201","wikidata":"https://www.wikidata.org/wiki/Q980509","display_name":"Embedding","level":2,"score":0.5812000036239624},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.5760999917984009},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5591999888420105},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.4772999882698059},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.4668000042438507},{"id":"https://openalex.org/C167966045","wikidata":"https://www.wikidata.org/wiki/Q5532625","display_name":"Generative model","level":3,"score":0.43540000915527344},{"id":"https://openalex.org/C2780310081","wikidata":"https://www.wikidata.org/wiki/Q1154312","display_name":"Video editing","level":2,"score":0.4332999885082245},{"id":"https://openalex.org/C39890363","wikidata":"https://www.wikidata.org/wiki/Q36108","display_name":"Generative grammar","level":2,"score":0.42570000886917114},{"id":"https://openalex.org/C204323151","wikidata":"https://www.wikidata.org/wiki/Q905424","display_name":"Range (aeronautics)","level":2,"score":0.3840000033378601},{"id":"https://openalex.org/C204241405","wikidata":"https://www.wikidata.org/wiki/Q461499","display_name":"Transformation (genetics)","level":3,"score":0.36010000109672546},{"id":"https://openalex.org/C2987933465","wikidata":"https://www.wikidata.org/wiki/Q141130","display_name":"Image manipulation","level":3,"score":0.3472999930381775},{"id":"https://openalex.org/C2777212361","wikidata":"https://www.wikidata.org/wiki/Q5127848","display_name":"Class (philosophy)","level":2,"score":0.3246000111103058},{"id":"https://openalex.org/C3073032","wikidata":"https://www.wikidata.org/wiki/Q15912075","display_name":"Information hiding","level":3,"score":0.30880001187324524},{"id":"https://openalex.org/C184337299","wikidata":"https://www.wikidata.org/wiki/Q1437428","display_name":"Semantics (computer science)","level":2,"score":0.2971000075340271},{"id":"https://openalex.org/C2780581891","wikidata":"https://www.wikidata.org/wiki/Q15738686","display_name":"Copy protection","level":4,"score":0.29159998893737793},{"id":"https://openalex.org/C120936955","wikidata":"https://www.wikidata.org/wiki/Q2155640","display_name":"Empirical research","level":2,"score":0.2696000039577484},{"id":"https://openalex.org/C2989087649","wikidata":"https://www.wikidata.org/wiki/Q176953","display_name":"Image synthesis","level":3,"score":0.257999986410141}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.48550/arxiv.2603.12949","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2603.12949","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"doi:10.48550/arxiv.2603.12949","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2603.12949","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Robust":[0],"invisible":[1],"watermarks":[2],"are":[3],"widely":[4],"used":[5,93],"to":[6,19,98],"support":[7],"copyright":[8],"protection,":[9],"content":[10,49,157],"provenance,":[11],"and":[12,38,61,108,136,159],"accountability":[13],"by":[14,94],"embedding":[15],"hidden":[16],"signals":[17,92],"designed":[18],"survive":[20],"common":[21],"post-processing":[22],"operations.":[23],"However,":[24],"diffusion-based":[25,133],"image":[26,171],"editing":[27,68,79,134],"introduces":[28],"a":[29,42,58,81,130],"fundamentally":[30],"different":[31],"class":[32],"of":[33,132],"transformations:":[34],"it":[35],"injects":[36],"noise":[37],"reconstructs":[39],"images":[40],"through":[41],"powerful":[43],"generative":[44,170],"prior,":[45],"often":[46],"altering":[47],"semantic":[48,144],"while":[50],"preserving":[51],"photorealism.":[52],"In":[53],"this":[54],"paper,":[55],"we":[56,152],"provide":[57],"unified":[59],"theoretical":[60],"empirical":[62],"analysis":[63,101],"showing":[64],"that":[65,84,141,166],"non-adversarial":[66],"diffusion":[67,78,112],"can":[69,146],"unintentionally":[70],"degrade":[71],"or":[72],"remove":[73],"robust":[74,168],"watermarks.":[75],"We":[76,123],"model":[77],"as":[80],"stochastic":[82],"transformation":[83],"progressively":[85],"contracts":[86],"off-manifold":[87],"perturbations,":[88],"causing":[89],"the":[90,154],"low-amplitude":[91],"many":[95],"watermarking":[96,127,164],"schemes":[97],"decay.":[99],"Our":[100],"derives":[102],"bounds":[103],"on":[104],"watermark":[105,149],"signal-to-noise":[106],"ratio":[107],"mutual":[109],"information":[110],"along":[111],"trajectories,":[113],"yielding":[114],"conditions":[115],"under":[116,129,169],"which":[117],"reliable":[118],"recovery":[119],"becomes":[120],"information-theoretically":[121],"impossible.":[122],"further":[124],"evaluate":[125],"representative":[126],"systems":[128],"range":[131],"scenarios":[135],"strengths.":[137],"The":[138],"results":[139],"indicate":[140],"even":[142],"routine":[143],"edits":[145],"significantly":[147],"reduce":[148],"recoverability.":[150],"Finally,":[151],"discuss":[153],"implications":[155],"for":[156,162],"provenance":[158],"outline":[160],"principles":[161],"designing":[163],"approaches":[165],"remain":[167],"editing.":[172]},"counts_by_year":[],"updated_date":"2026-03-17T07:05:13.627479","created_date":"2026-03-17T00:00:00"}
