Papers
Topics
Authors
Recent
Gemini 2.5 Flash
Gemini 2.5 Flash
97 tokens/sec
GPT-4o
53 tokens/sec
Gemini 2.5 Pro Pro
44 tokens/sec
o3 Pro
5 tokens/sec
GPT-4.1 Pro
47 tokens/sec
DeepSeek R1 via Azure Pro
28 tokens/sec
2000 character limit reached

What can Discriminator do? Towards Box-free Ownership Verification of Generative Adversarial Network (2307.15860v1)

Published 29 Jul 2023 in cs.CV and cs.CR

Abstract: In recent decades, Generative Adversarial Network (GAN) and its variants have achieved unprecedented success in image synthesis. However, well-trained GANs are under the threat of illegal steal or leakage. The prior studies on remote ownership verification assume a black-box setting where the defender can query the suspicious model with specific inputs, which we identify is not enough for generation tasks. To this end, in this paper, we propose a novel IP protection scheme for GANs where ownership verification can be done by checking outputs only, without choosing the inputs (i.e., box-free setting). Specifically, we make use of the unexploited potential of the discriminator to learn a hypersphere that captures the unique distribution learned by the paired generator. Extensive evaluations on two popular GAN tasks and more than 10 GAN architectures demonstrate our proposed scheme to effectively verify the ownership. Our proposed scheme shown to be immune to popular input-based removal attacks and robust against other existing attacks. The source code and models are available at https://github.com/AbstractTeen/gan_ownership_verification

User Edit Pencil Streamline Icon: https://streamlinehq.com
Authors (8)
  1. Ziheng Huang (9 papers)
  2. Boheng Li (12 papers)
  3. Yan Cai (10 papers)
  4. Run Wang (31 papers)
  5. Shangwei Guo (32 papers)
  6. Liming Fang (10 papers)
  7. Jing Chen (215 papers)
  8. Lina Wang (29 papers)
Citations (8)

Summary

We haven't generated a summary for this paper yet.