notesum.ai
Published at December 4Black-Box Forgery Attacks on Semantic Watermarks for Diffusion Models
cs.CR
cs.AI
cs.CV
Released Date: December 4, 2024
Authors: Andreas Müller, Denis Lukovnikov1, Jonas Thietke1, Asja Fischer1, Erwin Quiring1
Aff.: 1Ruhr University Bochum

| Gaussian Shading | Tree-Ring | |||||
|---|---|---|---|---|---|---|
| (FPR=) | (FPR=) | |||||
| Model | Step | Det. | Attr. | PSNR | Det. | PSNR |
| SD2.1-Anime | 50 | 1.00 | 1.00 | 30.35 | 1.00 | 30.35 |
| 100 | 1.00 | 1.00 | 30.00 | 1.00 | 29.99 | |
| 150 | 1.00 | 1.00 | 29.78 | 1.00 | 29.77 | |
| SDXL | 50 | 1.00 | 1.00 | 30.31 | 0.72 | 30.32 |
| 100 | 1.00 | 1.00 | 29.98 | 0.95 | 29.97 | |
| 150 | 1.00 | 1.00 | 29.78 | 0.99 | 29.77 | |
| PixArt- | 50 | 0.91 | 0.91 | 30.35 | 0.55 | 30.34 |
| 100 | 0.94 | 0.94 | 30.00 | 0.78 | 29.99 | |
| 150 | 0.96 | 0.96 | 29.78 | 0.84 | 29.78 | |
| FLUX.1 | 50 | 0.66 | 0.66 | 30.49 | 0.13 | 30.42 |
| 100 | 0.88 | 0.88 | 30.14 | 0.20 | 30.08 | |
| 150 | 0.95 | 0.95 | 29.92 | 0.28 | 29.87 | |