Structural Watermarking to Deep Neural Networks via Network Channel Pruning

被引:5
|
作者
Zhao, Xiangyu [1 ]
Yao, Yinzhe [1 ]
Wu, Hanzhou [1 ]
Zhang, Xinpeng [1 ]
机构
[1] Shanghai Univ, Shanghai 200444, Peoples R China
基金
中国国家自然科学基金;
关键词
Watermarking; deep neural networks; ownership protection; deep learning; security;
D O I
10.1109/WIFS53200.2021.9648376
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In order to protect the intellectual property (IP) of deep neural networks (DNNs), many existing DNN watermarking techniques either embed watermarks directly into the DNN parameters or insert backdoor watermarks by fine-tuning the DNN parameters, which, however, cannot resist against various attack methods that remove watermarks by altering DNN parameters. In this paper, we bypass such attacks by introducing a structural watermarking scheme that utilizes channel pruning to embed the watermark into the host DNN architecture instead of crafting the DNN parameters. To be specific, during watermark embedding, we prune the internal channels of the host DNN with the channel pruning rates controlled by the watermark. During watermark extraction, the watermark is retrieved by identifying the channel pruning rates from the architecture of the target DNN model. Due to the superiority of pruning mechanism, the performance of the DNN model on its original task is reserved during watermark embedding. Experimental results have shown that, the proposed work enables the embedded watermark to be reliably recovered and provides a sufficient payload, without sacrificing the usability of the DNN model. It is also demonstrated that the proposed work is robust against common transforms and attacks designed for conventional watermarking approaches.
引用
收藏
页码:14 / 19
页数:6
相关论文
共 50 条
  • [1] Channel Pruning for Deep Neural Networks via a Relaxed Groupwise Splitting Method
    Yang, Biao
    Xin, Jack
    Lyu, Jiancheng
    Zhang, Shuai
    Qi, Yingyong
    2019 SECOND INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE FOR INDUSTRIES (AI4I 2019), 2019, : 97 - 98
  • [2] Conditional Automated Channel Pruning for Deep Neural Networks
    Liu, Yixin
    Guo, Yong
    Guo, Jiaxin
    Jiang, Luoqian
    Chen, Jian
    IEEE SIGNAL PROCESSING LETTERS, 2021, 28 : 1275 - 1279
  • [3] Channel Pruning for Accelerating Very Deep Neural Networks
    He, Yihui
    Zhang, Xiangyu
    Sun, Jian
    2017 IEEE INTERNATIONAL CONFERENCE ON COMPUTER VISION (ICCV), 2017, : 1398 - 1406
  • [4] EFFICIENT IMAGE SUPER RESOLUTION VIA CHANNEL DISCRIMINATIVE DEEP NEURAL NETWORK PRUNING
    Hou, Zejiang
    Kung, Sun-Yuan
    2020 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH, AND SIGNAL PROCESSING, 2020, : 3647 - 3651
  • [5] Discrimination-aware Channel Pruning for Deep Neural Networks
    Zhuang, Zhuangwei
    Tan, Mingkui
    Zhuang, Bohan
    Liu, Jing
    Guo, Yong
    Wu, Qingyao
    Huang, Junzhou
    Zhu, Jinhui
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 31 (NIPS 2018), 2018, 31
  • [6] Deep Neural Networks Pruning via the Structured Perspective Regularization
    Cacciola, Matteo
    Frangioni, Antonio
    Li, Xinlin
    Lodi, Andrea
    SIAM JOURNAL ON MATHEMATICS OF DATA SCIENCE, 2023, 5 (04): : 1051 - 1077
  • [7] Filter Pruning via Feature Discrimination in Deep Neural Networks
    He, Zhiqiang
    Qian, Yaguan
    Wang, Yuqi
    Wang, Bin
    Guan, Xiaohui
    Gu, Zhaoquan
    Ling, Xiang
    Zeng, Shaoning
    Wang, Haijiang
    Zhou, Wujie
    COMPUTER VISION, ECCV 2022, PT XXI, 2022, 13681 : 245 - 261
  • [8] Dynamical Channel Pruning by Conditional Accuracy Change for Deep Neural Networks
    Chen, Zhiqiang
    Xu, Ting-Bing
    Du, Changde
    Liu, Cheng-Lin
    He, Huiguang
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2021, 32 (02) : 799 - 813
  • [9] Identity-linked Group Channel Pruning for Deep Neural Networks
    Zhang, Chenxin
    Xu, Keqin
    Liu, Jie
    Kang, Liangyi
    Zhou, Zhiyang
    Ye, Dan
    2021 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2021,
  • [10] Fine-Grained Channel Pruning for Deep Residual Neural Networks
    Chen, Siang
    Huang, Kai
    Xiong, Dongliang
    Li, Bowen
    Claesen, Luc
    ARTIFICIAL NEURAL NETWORKS AND MACHINE LEARNING, ICANN 2020, PT II, 2020, 12397 : 3 - 14