Suppr超能文献

编码深度神经网络水印:使用恒权码对剪枝模型的鲁棒性

Coded DNN Watermark: Robustness against Pruning Models Using Constant Weight Code.

作者信息

Yasui Tatsuya, Tanaka Takuro, Malik Asad, Kuribayashi Minoru

机构信息

Graduate School of Natural Science and Technology, Okayama University, Okayama 700-8530, Japan.

Department of Computer Science, Aligarh Muslim University, Aligarh 202002, India.

出版信息

J Imaging. 2022 May 26;8(6):152. doi: 10.3390/jimaging8060152.

Abstract

Deep Neural Network (DNN) watermarking techniques are increasingly being used to protect the intellectual property of DNN models. Basically, DNN watermarking is a technique to insert side information into the DNN model without significantly degrading the performance of its original task. A pruning attack is a threat to DNN watermarking, wherein the less important neurons in the model are pruned to make it faster and more compact. As a result, removing the watermark from the DNN model is possible. This study investigates a channel coding approach to protect DNN watermarking against pruning attacks. The channel model differs completely from conventional models involving digital images. Determining the suitable encoding methods for DNN watermarking remains an open problem. Herein, we presented a novel encoding approach using constant weight codes to protect the DNN watermarking against pruning attacks. The experimental results confirmed that the robustness against pruning attacks could be controlled by carefully setting two thresholds for binary symbols in the codeword.

摘要

深度神经网络(DNN)水印技术正越来越多地用于保护DNN模型的知识产权。基本上,DNN水印是一种在不显著降低其原始任务性能的情况下将辅助信息插入DNN模型的技术。剪枝攻击是对DNN水印的一种威胁,其中模型中不太重要的神经元被剪枝,以使其更快、更紧凑。结果,从DNN模型中去除水印成为可能。本研究探讨了一种信道编码方法,以保护DNN水印免受剪枝攻击。该信道模型与涉及数字图像的传统模型完全不同。确定适用于DNN水印的编码方法仍然是一个未解决的问题。在此,我们提出了一种使用恒重码的新颖编码方法,以保护DNN水印免受剪枝攻击。实验结果证实,通过仔细设置码字中二进制符号的两个阈值,可以控制对剪枝攻击的鲁棒性。

https://cdn.ncbi.nlm.nih.gov/pmc/blobs/2fe6/9224781/a503e8ec4c55/jimaging-08-00152-g001.jpg

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验