Finding needles in a haystack: A Black-Box Approach to Invisible Watermark Detection
arxiv(2024)
摘要
In this paper, we propose WaterMark Detection (WMD), the first invisible
watermark detection method under a black-box and annotation-free setting. WMD
is capable of detecting arbitrary watermarks within a given reference dataset
using a clean non-watermarked dataset as a reference, without relying on
specific decoding methods or prior knowledge of the watermarking techniques. We
develop WMD using foundations of offset learning, where a clean non-watermarked
dataset enables us to isolate the influence of only watermarked samples in the
reference dataset. Our comprehensive evaluations demonstrate the effectiveness
of WMD, significantly outperforming naive detection methods, which only yield
AUC scores around 0.5. In contrast, WMD consistently achieves impressive
detection AUC scores, surpassing 0.9 in most single-watermark datasets and
exceeding 0.7 in more challenging multi-watermark scenarios across diverse
datasets and watermarking methods. As invisible watermarks become increasingly
prevalent, while specific decoding techniques remain undisclosed, our approach
provides a versatile solution and establishes a path toward increasing
accountability, transparency, and trust in our digital visual content.
更多查看译文
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要