Abstract
Digital watermarking techniques are valuable tools to embed digital signatures on multimedia content to establish the legal ownership and authenticity claims by the owners. Firstly this paper investigates the robustness of popular transform domain-based digital image watermarking schemes such as DCT, SVD, DWT, and their hybrid combinations against known image processing type attacks such as image blurring, compression, noise addition, rotation and cropping. Then, an enhanced hybrid scheme using DWT and SVD methods is proposed and its improved performance is demonstrated in terms of the quality of the extracted watermarks measured in terms of PSNR, SSIM and NCC values. This paper then proposes a novel adversarial attack based on a powerful Deep Convolutional Neural Network based Autoencoder(CAE) scheme. The CAE is specifically chosen to exploit its intrinsic capability to represent the image content (spatial and structural) through lower dimensional projections in the intermediate layers. The CAE is trained and tested on the entire image repository of the CIFAR10 data set. Once CAE is trained on a class of images and the parameters are frozen, it will serve as a system to produce a perceptually close image for any unseen input image belonging to the same class. The power of the proposed adversarial attack scheme is shown in terms of the quality of extracted watermarks against popular water mark embedding schemes. Finally the proposed enhanced hybrid strategy of DWT+SVD is shown to be robust against the new form of attack and outperforms all other techniques measured in terms of its high quality watermark extraction.
Similar content being viewed by others
References
Abdulrahman AK, Ozturk S (2019) A novel hybrid dct and dwt based robust watermarking algorithm for color images. Multimed Tools Appl 78 (12):17027–17049
Al-Haj A (2007) Combined dwt-dct digital image watermarking. J Comput Sci 3(9):740–746
Amirgholipour SK, Naghsh-Nilchi AR (2009) Robust digital image watermarking based on joint dwt-dct. Int J Digit Content Technol Appl 3(2):42–54
Baluja S (2020) Hiding images within images. IEEE Transactions on Pattern Analysis and Machine Intelligence 42(7):1685–1697
Barni M, Bartolini F, Cappellini V, Piva A (1998) A dct-domain system for robust image watermarking. Signal Process 66(3):357–372
Barni M, Bartolini F, De Rosa A, Piva A (2002) Color image watermarking in the karhunen-loeve transform domain. J Electron Imaging 11(1):87–95
Bhatnagar G, Raman B (2009) A new robust reference watermarking scheme based on dwt-svd. Comput Stand Interfaces 31(5):1002–1013
Böhme R, Kirchner M, Katzenbeisser S, Petitcolas F (2016) Media forensics. In: Information hiding. Artech House, pp 231–259
Botta M, Cavagnino D, Pomponiu V (2015) Fragile watermarking using Karhunen–Loève transform: the klt-f approach. Soft Comput 19 (7):1905–1919
Brannock E, Weeks M, Harrison R (2008) Watermarking with wavelets: simplicity leads to robustness. In: IEEE SoutheastCon 2008. IEEE, pp 587–592
Cao L (2006) Singular value decomposition applied to digital image processing. Division of Computing Studies, Arizona State University Polytechnic Campus, Mesa Arizona State University polytechnic Campus, pp 1–15
Chandra DS (2002) Digital image watermarking using singular value decomposition. In: The 2002 45th Midwest symposium on circuits and systems, 2002. MWSCAS-2002, vol 3. IEEE, pp III–III
Chang CC, Tsai P, Lin CC (2005) Svd-based digital image watermarking scheme. Pattern Recognit Lett 26(10):1577–1586
Chen L, Zhao J (2018) Contourlet-based image and video watermarking robust to geometric attacks and compressions. Multimed Tools Appl 77(6):7187–7204
Cox IJ, Kilian J, Leighton FT, Shamoon T (1997) Secure spread spectrum watermarking for multimedia. IEEE Trans Image Process 6(12):1673–1687
El Bireki MFM, Abdullah M, Ukasha AAM, Elrowayati AA (2016) Digital image watermarking based on joint (dct-dwt) and arnold transform. Int J Secur Appl 10(5):107–118
Ganic E, Eskicioglu AM (2004) Robust dwt-svd domain image watermarking: embedding data in all frequencies. In: Proceedings of the 2004 workshop on multimedia and security, pp 166–174
Ganic E, Zubair N, Eskicioglu AM (2003) An optimal watermarking scheme based on singular value decomposition. In: Proceedings of the IASTED international conference on communication, network, and information security, vol 85
Goodfellow I, Bengio Y, Courville A (2016) Deep learning. MIT Press, Cambridge
Hayes J, Danezis G (2017) Generating steganographic images via adversarial training. In: Advances in neural information processing systems, pp 1954–1963
Hinton GE, Salakhutdinov RR (2006) Reducing the dimensionality of data with neural networks. Science 313(5786):504–507
Hsu CT, Wu JL (1999) Hidden digital watermarks in images. IEEE Trans Image Process 8(1):58–68
Huang J, Shi YQ (2001) Embedding gray level images. In: ISCAS 2001. The 2001 IEEE international symposium on circuits and systems (Cat. No. 01CH37196), vol 5. IEEE, pp 239–242
Jayalakshmi M, Merchant SN, Desai UB (2006) Digital watermarking in contourlet domain. In: 18th International conference on pattern recognition (ICPR’06), vol 3. IEEE, pp 861–864
Joshi M, et al. (2010) Robust image watermarking based on singular value decomposition and discrete wavelet transform. In: 2010 3rd International conference on computer science and information technology, vol 5. IEEE, pp 337–341
Kandi H, Mishra D, Gorthi SRS (2017) Exploring the learning capabilities of convolutional neural networks for robust image watermarking. Comput Secur 65:247–268
Kasban H (2017) A spiral based image watermarking scheme using karhunen–loeve and discrete hartley transforms. Multidimens Syst Signal Process 28 (2):573–595
Lai CC, Tsai CC (2010) Digital image watermarking using discrete wavelet transform and singular value decomposition. IEEE Trans Instrum Meas 59(11):3060–3063
Liu Y, Zhao J (2010) A new video watermarking algorithm based on 1d dft and radon transform. Signal Process 90(2):626–639
Lu CS (2004) Multimedia security: steganography and digital watermarking techniques for protection of intellectual property: steganography and digital watermarking techniques for protection of intellectual property. Igi Global
Milano D (2012) Content control: digital watermarking and fingerprinting. White Paper, Rhozet, a business unit of Harmonic Inc., http://www.rhozet.com/whitepapers/Fingerprinting-Watermarking.pdf, Last Accessed May 30
Mohammad AA, Alhaj A, Shaltaf S (2008) An improved svd-based watermarking scheme for protecting rightful ownership. Signal Process 88(9):2158–2180
Mukherjee S, Pal AK (2012) A dct-svd based robust watermarking scheme for grayscale image. In: Proceedings of the international conference on advances in computing, communications and informatics, pp 573–578
Najih A, Al-Haddad S, Ramli AR, Hashim S, Nematollahi MA (2017) Digital image watermarking based on angle quantization in discrete contourlet transform. J King Saud Univ-Comput Inf Sci 29(3):288–294
Nandi S, Santhi V (2016) Dwt–svd-based watermarking scheme using optimization technique. In: Artificial intelligence and evolutionary computations in engineering systems. Springer, pp 69–77
Narang M, Vashisth S (2013) Digital watermarking using discrete wavelet transform. International Journal of Computer Applications 74(20):34–38
Niu XM, Lu ZM, Sun SH (2000) Digital watermarking of still images with gray-level digital watermarks. IEEE Trans Consum Electron 46(1):137–145
O’Ruanaidh J, Dowling W, Boland F (1996) Watermarking digital images for copyright protection. IEE Proc-Vis Image Signal Process 143(4):250–256
Saxena P, Garg S, Srivastava A (2012) Dwt-svd semi-blind image watermarking using high frequency band. In: 2nd International conference on computer science and information technology (ICCSIT’2012) Singapore April, pp 28–29
Shieh JM, Lou DC, Chang MC (2006) A semi-blind digital watermarking scheme based on singular value decomposition. Comput Stand Interfaces 28(4):428–440
Singh A, Tayal A (2012) Choice of wavelet from wavelet families for dwt-dct-svd image watermarking
Singh P, Agarwal S (2013) A hybrid dct-svd based robust watermarking scheme for copyright protection. In: 2013 Africon. IEEE, pp 1–5
Su Q, Wang G, Lv G, Zhang X, Deng G, Chen B (2017) A novel blind color image watermarking based on contourlet transform and hessenberg decomposition. Multimed Tools Appl 76(6):8781–8801
Sverdlov A, Dexter S, Eskicioglu AM (2005) Robust dct-svd domain image watermarking for copyright protection: embedding data in all frequencies. In: 2005 13th European signal processing conference. IEEE, pp 1–4
Tao B, Dickinson B (1997) Adaptive watermarking in the dct domain. In: 1997 IEEE International conference on acoustics, speech, and signal processing, vol 4. IEEE, pp 2985–2988
Tewari TK, Saxena V (2010) An improved and robust dct based digital image watermarking scheme. Int J Comput Appl 3(1):28–32
Thakkar FN, Srivastava VK (2017) A blind medical image watermarking: Dwt-svd based robust and secure approach for telemedicine applications. Multimed Tools Appl 76(3):3669–3697
Vo PH, Nguyen TS, Huynh VT, Do TN (2017) A robust hybrid watermarking scheme based on dct and svd for copyright protection of stereo images. In: 2017 4th NAFOSTED conference on information and computer science. IEEE, pp 331–335
Xia XG, Boncelet CG, Arce GR (1997) A multiresolution watermark for digital images. In: Proceedings of international conference on image processing, vol 1. IEEE, pp 548–551
Zaboli S, Moin MS (2007) Cew: A non-blind adaptive image watermarking approach based on entropy in contourlet domain. In: 2007 IEEE international symposium on industrial electronics. IEEE, pp 1687–1692
Zhang L, Wei D (2019) Dual dct-dwt-svd digital watermarking algorithm based on particle swarm optimization. Multimed Tools Appl 78(19):28003–28023
Acknowledgments
We dedicate this paper to the founder Chancellor of Sri Sathya Institute of Higher Learning Bhagawan Sri Sathya Sai Baba under His dictum high quality value-based education is imparted without any cost over the past five decades. We take this opportunity to thank the support, innumerable discussions and guidance from our colleague V.Sai Raam. We would also like to thank Google for providing us a very useful resource of Google Colaboratory.
Author information
Authors and Affiliations
Corresponding author
Additional information
Publisher’s note
Springer Nature remains neutral with regard to jurisdictional claims in published maps and institutional affiliations.
Rights and permissions
About this article
Cite this article
Sharma, S.S., Chandrasekaran, V. A robust hybrid digital watermarking technique against a powerful CNN-based adversarial attack. Multimed Tools Appl 79, 32769–32790 (2020). https://doi.org/10.1007/s11042-020-09555-5
Received:
Revised:
Accepted:
Published:
Issue Date:
DOI: https://doi.org/10.1007/s11042-020-09555-5