Affiliation:
1. School of Communication and Information Engineering, Shanghai University, Shanghai 200444, China
Abstract
Natural language generation (NLG) models combined with increasingly mature and powerful deep learning techniques have been widely used in recent years. Deployed NLG models in practical applications may be stolen or used illegally, and watermarking has become an important tool to protect the Intellectual Property (IP) of these deep models. Watermarking technique designs algorithms to embed watermark information and extracts watermark information for IP identification of NLG models can be seen as a symmetric signal processing problem. In terms of IP protection of NLG models, however, the existing watermarking approaches cannot provide reliable and timely model protection and prevent illegal users from utilizing the original performance of the stolen models. In addition, the quality of watermarked text sequences generated by some watermarking approaches is not high. In view of these, this paper proposes two embedding schemes to the hidden memory state of the RNN to protect the IP of NLG models for different tasks. Besides, we add a language model loss to the model decoder to improve the grammatical correctness of the output text sequences. During the experiments, it is proved that our approach does not compromise the performance of the original NLG models on the corresponding datasets and outputs high-quality text sequences, while forged secret keys will generate unusable NLG models, thus defeating the purpose of model infringement. Besides, we also conduct sufficient experiments to prove that the proposed model has strong robustness under different attacks.
Funder
National Natural Science Foundation of China
Subject
Physics and Astronomy (miscellaneous),General Mathematics,Chemistry (miscellaneous),Computer Science (miscellaneous)
Reference48 articles.
1. Adversarial attacks on deep-learning models in natural language processing: A survey;Zhang;ACM Trans. Intell. Syst. Technol. (TIST),2020
2. Mittal, V., Gangodkar, D., and Pant, B. (2020, January 6–7). Exploring The Dimension of DNN Techniques For Text Categorization Using NLP. Proceedings of the 2020 6th International Conference on Advanced Computing and Communication Systems (ICACCS), Coimbatore, India.
3. Deep learning for natural language processing in urology: State-of-the-art automated extraction of detailed pathologic prostate cancer data from narratively written electronic health records;Tian;JCO Clin. Cancer Inform.,2018
4. Condition-based monitoring in variable machine running conditions using low-level knowledge transfer with DNN;Maurya;IEEE Trans. Autom. Sci. Eng.,2020
5. Breast cancer diagnosis using multiple activation deep neural network;Vijayakumar;Concurr. Eng.,2021
Cited by
2 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献