Skip to main content

Table 2 Watermark verification results of owner’s legal trigger set and attacker’s forged trigger set

From: Secure neural network watermarking protocol against forging attack

N

L

Ï„

towner

tforged

10

38

36

38

3.4

100

20

18

20

0.4