Fixed Neural Network Steganography: Train the images, not the network
Varsha Kishore, Xiangyu Chen, Yan Wang, Boyi Li, Kilian Q. Weinberger
Abstract
Recent attempts at image steganography make use of advances in deep learning to train an encoder-decoder network pair to hide and retrieve secret messages in images. These methods are able to hide large amounts of data, but they also incur high decoding error rates (around 20%). In this paper, we propose a novel algorithm for steganography that takes advantage of the fact that neural networks are sensitive to tiny perturbations. Our method, Fixed Neural Network Steganography (FNNS), yields significantly lower error rates when compared to prior state-of-the-art methods and achieves 0% error reliably for hiding up to 3 bits per pixel (bpp) of secret information in images. FNNS also successfully evades existing statistical steganalysis systems and can be modified to evade neural steganalysis systems as well. Recovering every bit correctly, up to 3 bpp, enables novel applications that requires encryption. We introduce one specific use case for facilitating anonymized and safe image sharing. Our code is available at https://github.com/varshakishore/FNNS .
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 6747e40b-637f-49f4-99b4-9c00cc66a6d6Cited by top-tier papers20
- The Stable Signature: Rooting Watermarks in Latent Diffusion ModelsPierre Fernandez, Guillaume Couairon, Hervé Jégou, Matthijs Douze et al.ICCV 2023 · 370 citations
- Gaussian Shading: Provable Performance-Lossless Image Watermarking for Diffusion ModelsZijin Yang, Kai Zeng, Kejiang Chen, Han Fang et al.CVPR 2024 · 54 citations
- How to Trace Latent Generative Model Generated Images without Artificial Watermark?Zhenting Wang, Vikash Sehwag, Chen Chen, Lingjuan Lyu et al.ICML 2024 · 24 citations
- Securing Fixed Neural Network SteganographyZicong Luo, Sheng Li, Guobiao Li, Zhenxing Qian et al.ACM MM 2023 · 19 citations
- Hiding Visual Information via Obfuscating Adversarial PerturbationsZhigang Su, Dawei Zhou, Nannan Wang, Decheng Liu et al.ICCV 2023 · 16 citations
Builds on11
- Distillation as a Defense to Adversarial Perturbations Against Deep Neural NetworksNicolas Papernot, Patrick D. McDaniel, Xi Wu, Somesh Jha et al.S&P 2016 · 3,275 citations
- Feature Squeezing: Detecting Adversarial Examples in Deep Neural NetworksWeilin Xu, David Evans, Yanjun QiNDSS 2018 · 1,633 citations
- MagNet: A Two-Pronged Defense against Adversarial ExamplesDongyu Meng, Hao ChenCCS 2017 · 1,295 citations
- HiNet: Deep Image Hiding by Invertible NetworkJunpeng Jing, Xin Deng, Mai Xu, Jianyi Wang et al.ICCV 2021 · 301 citations
- UDH: Universal Deep Hiding for Steganography, Watermarking, and Light Field MessagingChaoning Zhang, Philipp Benz, Adil Karjauv, Geng Sun et al.NeurIPS 2020 · 198 citations
Related papers
- Cover-separable Fixed Neural Network Steganography via Deep Generative ModelsGuobiao Li, Sheng Li, Zhenxing Qian, Xinpeng ZhangACM MM 2024 · 15 citations
- Learning Iterative Neural Optimizers for Image SteganographyXiangyu Chen, Varsha Kishore, Kilian Q. WeinbergerICLR 2023 · 3 citations
- RFNNS: Robust Fixed Neural Network Steganography with Universal Text-to-Image ModelsYu Cheng, Jiuan Zhou, Jiawei Chen, Zhaoxia Yin et al.AAAI 2026
- Purified and Unified Steganographic NetworkGuobiao Li, Sheng Li, Zicong Luo, Zhenxing Qian et al.CVPR 2024
- Large-Capacity and Flexible Video Steganography via Invertible Neural NetworkChong Mou, Youmin Xu, Jiechong Song, Chen Zhao et al.CVPR 2023
