2000 character limit reached
A Response to Glaze Purification via IMPRESS (2312.07731v1)
Published 12 Dec 2023 in cs.CR
Abstract: Recent work proposed a new mechanism to remove protective perturbation added by Glaze in order to again enable mimicry of art styles from images protected by Glaze. Despite promising results shown in the original paper, our own tests with the authors' code demonstrated several limitations of the proposed purification approach. The main limitations are 1) purification has a limited effect when tested on artists that are not well-known historical artists already embedded in original training data, 2) problems in evaluation metrics, and 3) collateral damage on mimicry result for clean images. We believe these limitations should be carefully considered in order to understand real world usability of the purification attack.
- Shawn Shan (16 papers)
- Stanley Wu (6 papers)
- Haitao Zheng (50 papers)
- Ben Y. Zhao (49 papers)