Skip to main content
Log in

A robust hybrid digital watermarking technique against a powerful CNN-based adversarial attack

  • Published:
Multimedia Tools and Applications Aims and scope Submit manuscript

Abstract

Digital watermarking techniques are valuable tools to embed digital signatures on multimedia content to establish the legal ownership and authenticity claims by the owners. Firstly this paper investigates the robustness of popular transform domain-based digital image watermarking schemes such as DCT, SVD, DWT, and their hybrid combinations against known image processing type attacks such as image blurring, compression, noise addition, rotation and cropping. Then, an enhanced hybrid scheme using DWT and SVD methods is proposed and its improved performance is demonstrated in terms of the quality of the extracted watermarks measured in terms of PSNR, SSIM and NCC values. This paper then proposes a novel adversarial attack based on a powerful Deep Convolutional Neural Network based Autoencoder(CAE) scheme. The CAE is specifically chosen to exploit its intrinsic capability to represent the image content (spatial and structural) through lower dimensional projections in the intermediate layers. The CAE is trained and tested on the entire image repository of the CIFAR10 data set. Once CAE is trained on a class of images and the parameters are frozen, it will serve as a system to produce a perceptually close image for any unseen input image belonging to the same class. The power of the proposed adversarial attack scheme is shown in terms of the quality of extracted watermarks against popular water mark embedding schemes. Finally the proposed enhanced hybrid strategy of DWT+SVD is shown to be robust against the new form of attack and outperforms all other techniques measured in terms of its high quality watermark extraction.

This is a preview of subscription content, log in via an institution to check access.

Access this article

Price excludes VAT (USA)
Tax calculation will be finalised during checkout.

Instant access to the full article PDF.

Fig. 1
Fig. 2
Fig. 3
Fig. 4
Fig. 5
Fig. 6
Fig. 7

Similar content being viewed by others

References

  1. Abdulrahman AK, Ozturk S (2019) A novel hybrid dct and dwt based robust watermarking algorithm for color images. Multimed Tools Appl 78 (12):17027–17049

    Article  Google Scholar 

  2. Al-Haj A (2007) Combined dwt-dct digital image watermarking. J Comput Sci 3(9):740–746

    Article  Google Scholar 

  3. Amirgholipour SK, Naghsh-Nilchi AR (2009) Robust digital image watermarking based on joint dwt-dct. Int J Digit Content Technol Appl 3(2):42–54

    Google Scholar 

  4. Baluja S (2020) Hiding images within images. IEEE Transactions on Pattern Analysis and Machine Intelligence 42(7):1685–1697

    Article  Google Scholar 

  5. Barni M, Bartolini F, Cappellini V, Piva A (1998) A dct-domain system for robust image watermarking. Signal Process 66(3):357–372

    Article  Google Scholar 

  6. Barni M, Bartolini F, De Rosa A, Piva A (2002) Color image watermarking in the karhunen-loeve transform domain. J Electron Imaging 11(1):87–95

    Article  Google Scholar 

  7. Bhatnagar G, Raman B (2009) A new robust reference watermarking scheme based on dwt-svd. Comput Stand Interfaces 31(5):1002–1013

    Article  Google Scholar 

  8. Böhme R, Kirchner M, Katzenbeisser S, Petitcolas F (2016) Media forensics. In: Information hiding. Artech House, pp 231–259

  9. Botta M, Cavagnino D, Pomponiu V (2015) Fragile watermarking using Karhunen–Loève transform: the klt-f approach. Soft Comput 19 (7):1905–1919

    Article  Google Scholar 

  10. Brannock E, Weeks M, Harrison R (2008) Watermarking with wavelets: simplicity leads to robustness. In: IEEE SoutheastCon 2008. IEEE, pp 587–592

  11. Cao L (2006) Singular value decomposition applied to digital image processing. Division of Computing Studies, Arizona State University Polytechnic Campus, Mesa Arizona State University polytechnic Campus, pp 1–15

  12. Chandra DS (2002) Digital image watermarking using singular value decomposition. In: The 2002 45th Midwest symposium on circuits and systems, 2002. MWSCAS-2002, vol 3. IEEE, pp III–III

  13. Chang CC, Tsai P, Lin CC (2005) Svd-based digital image watermarking scheme. Pattern Recognit Lett 26(10):1577–1586

    Article  Google Scholar 

  14. Chen L, Zhao J (2018) Contourlet-based image and video watermarking robust to geometric attacks and compressions. Multimed Tools Appl 77(6):7187–7204

    Article  Google Scholar 

  15. Cox IJ, Kilian J, Leighton FT, Shamoon T (1997) Secure spread spectrum watermarking for multimedia. IEEE Trans Image Process 6(12):1673–1687

    Article  Google Scholar 

  16. El Bireki MFM, Abdullah M, Ukasha AAM, Elrowayati AA (2016) Digital image watermarking based on joint (dct-dwt) and arnold transform. Int J Secur Appl 10(5):107–118

    Google Scholar 

  17. Ganic E, Eskicioglu AM (2004) Robust dwt-svd domain image watermarking: embedding data in all frequencies. In: Proceedings of the 2004 workshop on multimedia and security, pp 166–174

  18. Ganic E, Zubair N, Eskicioglu AM (2003) An optimal watermarking scheme based on singular value decomposition. In: Proceedings of the IASTED international conference on communication, network, and information security, vol 85

  19. Goodfellow I, Bengio Y, Courville A (2016) Deep learning. MIT Press, Cambridge

    MATH  Google Scholar 

  20. Hayes J, Danezis G (2017) Generating steganographic images via adversarial training. In: Advances in neural information processing systems, pp 1954–1963

  21. Hinton GE, Salakhutdinov RR (2006) Reducing the dimensionality of data with neural networks. Science 313(5786):504–507

    Article  MathSciNet  Google Scholar 

  22. Hsu CT, Wu JL (1999) Hidden digital watermarks in images. IEEE Trans Image Process 8(1):58–68

    Article  Google Scholar 

  23. Huang J, Shi YQ (2001) Embedding gray level images. In: ISCAS 2001. The 2001 IEEE international symposium on circuits and systems (Cat. No. 01CH37196), vol 5. IEEE, pp 239–242

  24. Jayalakshmi M, Merchant SN, Desai UB (2006) Digital watermarking in contourlet domain. In: 18th International conference on pattern recognition (ICPR’06), vol 3. IEEE, pp 861–864

  25. Joshi M, et al. (2010) Robust image watermarking based on singular value decomposition and discrete wavelet transform. In: 2010 3rd International conference on computer science and information technology, vol 5. IEEE, pp 337–341

  26. Kandi H, Mishra D, Gorthi SRS (2017) Exploring the learning capabilities of convolutional neural networks for robust image watermarking. Comput Secur 65:247–268

    Article  Google Scholar 

  27. Kasban H (2017) A spiral based image watermarking scheme using karhunen–loeve and discrete hartley transforms. Multidimens Syst Signal Process 28 (2):573–595

    Article  Google Scholar 

  28. Lai CC, Tsai CC (2010) Digital image watermarking using discrete wavelet transform and singular value decomposition. IEEE Trans Instrum Meas 59(11):3060–3063

    Article  Google Scholar 

  29. Liu Y, Zhao J (2010) A new video watermarking algorithm based on 1d dft and radon transform. Signal Process 90(2):626–639

    Article  Google Scholar 

  30. Lu CS (2004) Multimedia security: steganography and digital watermarking techniques for protection of intellectual property: steganography and digital watermarking techniques for protection of intellectual property. Igi Global

  31. Milano D (2012) Content control: digital watermarking and fingerprinting. White Paper, Rhozet, a business unit of Harmonic Inc., http://www.rhozet.com/whitepapers/Fingerprinting-Watermarking.pdf, Last Accessed May 30

  32. Mohammad AA, Alhaj A, Shaltaf S (2008) An improved svd-based watermarking scheme for protecting rightful ownership. Signal Process 88(9):2158–2180

    Article  Google Scholar 

  33. Mukherjee S, Pal AK (2012) A dct-svd based robust watermarking scheme for grayscale image. In: Proceedings of the international conference on advances in computing, communications and informatics, pp 573–578

  34. Najih A, Al-Haddad S, Ramli AR, Hashim S, Nematollahi MA (2017) Digital image watermarking based on angle quantization in discrete contourlet transform. J King Saud Univ-Comput Inf Sci 29(3):288–294

    Google Scholar 

  35. Nandi S, Santhi V (2016) Dwt–svd-based watermarking scheme using optimization technique. In: Artificial intelligence and evolutionary computations in engineering systems. Springer, pp 69–77

  36. Narang M, Vashisth S (2013) Digital watermarking using discrete wavelet transform. International Journal of Computer Applications 74(20):34–38

    Article  Google Scholar 

  37. Niu XM, Lu ZM, Sun SH (2000) Digital watermarking of still images with gray-level digital watermarks. IEEE Trans Consum Electron 46(1):137–145

    Article  Google Scholar 

  38. O’Ruanaidh J, Dowling W, Boland F (1996) Watermarking digital images for copyright protection. IEE Proc-Vis Image Signal Process 143(4):250–256

    Article  Google Scholar 

  39. Saxena P, Garg S, Srivastava A (2012) Dwt-svd semi-blind image watermarking using high frequency band. In: 2nd International conference on computer science and information technology (ICCSIT’2012) Singapore April, pp 28–29

  40. Shieh JM, Lou DC, Chang MC (2006) A semi-blind digital watermarking scheme based on singular value decomposition. Comput Stand Interfaces 28(4):428–440

    Article  Google Scholar 

  41. Singh A, Tayal A (2012) Choice of wavelet from wavelet families for dwt-dct-svd image watermarking

  42. Singh P, Agarwal S (2013) A hybrid dct-svd based robust watermarking scheme for copyright protection. In: 2013 Africon. IEEE, pp 1–5

  43. Su Q, Wang G, Lv G, Zhang X, Deng G, Chen B (2017) A novel blind color image watermarking based on contourlet transform and hessenberg decomposition. Multimed Tools Appl 76(6):8781–8801

    Article  Google Scholar 

  44. Sverdlov A, Dexter S, Eskicioglu AM (2005) Robust dct-svd domain image watermarking for copyright protection: embedding data in all frequencies. In: 2005 13th European signal processing conference. IEEE, pp 1–4

  45. Tao B, Dickinson B (1997) Adaptive watermarking in the dct domain. In: 1997 IEEE International conference on acoustics, speech, and signal processing, vol 4. IEEE, pp 2985–2988

  46. Tewari TK, Saxena V (2010) An improved and robust dct based digital image watermarking scheme. Int J Comput Appl 3(1):28–32

    Google Scholar 

  47. Thakkar FN, Srivastava VK (2017) A blind medical image watermarking: Dwt-svd based robust and secure approach for telemedicine applications. Multimed Tools Appl 76(3):3669–3697

    Article  Google Scholar 

  48. Vo PH, Nguyen TS, Huynh VT, Do TN (2017) A robust hybrid watermarking scheme based on dct and svd for copyright protection of stereo images. In: 2017 4th NAFOSTED conference on information and computer science. IEEE, pp 331–335

  49. Xia XG, Boncelet CG, Arce GR (1997) A multiresolution watermark for digital images. In: Proceedings of international conference on image processing, vol 1. IEEE, pp 548–551

  50. Zaboli S, Moin MS (2007) Cew: A non-blind adaptive image watermarking approach based on entropy in contourlet domain. In: 2007 IEEE international symposium on industrial electronics. IEEE, pp 1687–1692

  51. Zhang L, Wei D (2019) Dual dct-dwt-svd digital watermarking algorithm based on particle swarm optimization. Multimed Tools Appl 78(19):28003–28023

    Article  Google Scholar 

Download references

Acknowledgments

We dedicate this paper to the founder Chancellor of Sri Sathya Institute of Higher Learning Bhagawan Sri Sathya Sai Baba under His dictum high quality value-based education is imparted without any cost over the past five decades. We take this opportunity to thank the support, innumerable discussions and guidance from our colleague V.Sai Raam. We would also like to thank Google for providing us a very useful resource of Google Colaboratory.

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Sai Shyam Sharma.

Additional information

Publisher’s note

Springer Nature remains neutral with regard to jurisdictional claims in published maps and institutional affiliations.

Rights and permissions

Reprints and permissions

About this article

Check for updates. Verify currency and authenticity via CrossMark

Cite this article

Sharma, S.S., Chandrasekaran, V. A robust hybrid digital watermarking technique against a powerful CNN-based adversarial attack. Multimed Tools Appl 79, 32769–32790 (2020). https://doi.org/10.1007/s11042-020-09555-5

Download citation

  • Received:

  • Revised:

  • Accepted:

  • Published:

  • Issue Date:

  • DOI: https://doi.org/10.1007/s11042-020-09555-5

Keywords

Navigation