5 citations · 5 across the 1 of their papers we have counts for
3 papers
cs.CR2021★ 5 cited
SoK: How Robust is Image Classification Deep Neural Network Watermarking? (Extended Version)
Nils Lukas, Edward Jiang, Xinda Li +1
Deep Neural Network (DNN) watermarking is a method for provenance verification of DNN models. Watermarking should be robust against watermark removal attacks that derive a surrogat…
cs.LG2019
Deep Neural Network Fingerprinting by Conferrable Adversarial Examples
Nils Lukas, Yuxuan Zhang, Florian Kerschbaum
In Machine Learning as a Service, a provider trains a deep neural network and gives many users access. The hosted (source) model is susceptible to model stealing attacks, where an…
cs.LG2019
On the Robustness of the Backdoor-based Watermarking in Deep Neural Networks
Masoumeh Shafieinejad, Jiaqi Wang, Nils Lukas +2
Obtaining the state of the art performance of deep learning models imposes a high cost to model generators, due to the tedious data preparation and the substantial processing requi…