Markpainting: Adversarial Machine Learning meets Inpainting

被引:0
|
作者
Khachaturov, David [1 ]
Shumailov, Ilia [1 ,2 ,3 ]
Zhao, Yiren [1 ]
Papernot, Nicolas [2 ,3 ]
Anderson, Ross [1 ]
机构
[1] Univ Cambridge, Comp Lab, Cambridge, England
[2] Univ Toronto, Toronto, ON, Canada
[3] Vector Inst, Toronto, ON, Canada
基金
加拿大自然科学与工程研究理事会; 英国工程与自然科学研究理事会;
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Inpainting is a learned interpolation technique that is based on generative modeling and used to populate masked or missing pieces in an image; it has wide applications in picture editing and retouching. Recently, inpainting started being used for watermark removal, raising concerns. In this paper we study how to manipulate it using our markpainting technique. First, we show how an image owner with access to an inpainting model can augment their image in such a way that any attempt to edit it using that model will add arbitrary visible information. We find that we can target multiple different models simultaneously with our technique. This can be designed to reconstitute a watermark if the editor had been trying to remove it. Second, we show that our markpainting technique is transferable to models that have different architectures or were trained on different datasets, so watermarks created using it are difficult for adversaries to remove. Markpainting is novel and can be used as a manipulation alarm that becomes visible in the event of inpainting. Source code is available at: https://github.com/iliaishacked/markpainting.
引用
收藏
页数:11
相关论文
共 50 条
  • [1] AdVersarial: Perceptual Ad Blocking meets Adversarial Machine Learning
    Tramer, Florian
    Dupre, Pascal
    Rusak, Gili
    Pellegrino, Giancarlo
    Boneh, Dan
    PROCEEDINGS OF THE 2019 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (CCS'19), 2019, : 2005 - 2021
  • [2] Family Reunion: Adversarial Machine Learning meets Digital Watermarking
    Rieck, Konrad
    MPS'18: PROCEEDINGS OF THE 2ND INTERNATIONAL WORKSHOP ON MULTIMEDIA PRIVACY AND SECURITY, 2018, : 1 - 1
  • [3] Image Inpainting by Machine Learning Algorithms
    Wan, Wei
    Leonov, Ivan
    PATTERN RECOGNITION AND IMAGE ANALYSIS, 2024, 34 (02) : 237 - 243
  • [4] Adversarial Machine Learning
    Tygar, J. D.
    IEEE INTERNET COMPUTING, 2011, 15 (05) : 4 - 6
  • [5] Machine Learning Meets Cancer
    Varlamova, Elena V.
    Butakova, Maria A.
    Semyonova, Vlada V.
    Soldatov, Sergey A.
    Poltavskiy, Artem V.
    Kit, Oleg I.
    Soldatov, Alexander V.
    CANCERS, 2024, 16 (06)
  • [6] Machine Learning Meets Databases
    Stephan Günnemann
    Datenbank-Spektrum, 2017, 17 (1) : 77 - 83
  • [7] Microbiology Meets Machine Learning
    Williams, Ruth
    SCIENTIST, 2019, 33 (05): : 22 - 22
  • [8] Adversarial Machine Learning for Text
    Lee, Daniel
    Verma, Rakesh
    PROCEEDINGS OF THE SIXTH INTERNATIONAL WORKSHOP ON SECURITY AND PRIVACY ANALYTICS (IWSPA'20), 2020, : 33 - 34
  • [9] Quantum adversarial machine learning
    Lu, Sirui
    Duan, Lu-Ming
    Deng, Dong-Ling
    PHYSICAL REVIEW RESEARCH, 2020, 2 (03):
  • [10] Machine Learning in Adversarial Settings
    McDaniel, Patrick
    Papernot, Nicolas
    Celik, Z. Berkay
    IEEE SECURITY & PRIVACY, 2016, 14 (03) : 68 - 72