From: Secure neural network watermarking protocol against forging attack
Metrics | Fromscratch [4] | WMcontent [6] | WMunrelated [6] | WMnois e[6] | [7] | Ax⊕W [12] | Ours |
---|---|---|---|---|---|---|---|
CIFAR-10 | |||||||
Trigger-set accuracy | 1 | 0.9993 | 1 | 0.9986 | 0.9998 | 1 | 1 |
Performance reduction | +0.0039 | −0.0019 | −0.0048 | −0.0011 | −0.0028 | −0.0061 | −0.0051 |
Trigger set size | 100 | 100 | ≤ 100 | 38 | |||
CIFAR-100 | |||||||
Trigger-set accuracy | 1 | 1 | 1 | ||||
Performance reduction | −0.0034 | +0.0011 | +0.0066 | ||||
Trigger set size | 100 | ≤ 100 | 20 |