{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,4]],"date-time":"2026-07-04T16:15:09Z","timestamp":1783181709162,"version":"3.54.6"},"reference-count":31,"publisher":"Elsevier BV","license":[{"start":{"date-parts":[[2027,1,1]],"date-time":"2027-01-01T00:00:00Z","timestamp":1798761600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"},{"start":{"date-parts":[[2027,1,1]],"date-time":"2027-01-01T00:00:00Z","timestamp":1798761600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/legal\/tdmrep-license"},{"start":{"date-parts":[[2027,1,1]],"date-time":"2027-01-01T00:00:00Z","timestamp":1798761600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-017"},{"start":{"date-parts":[[2027,1,1]],"date-time":"2027-01-01T00:00:00Z","timestamp":1798761600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"},{"start":{"date-parts":[[2027,1,1]],"date-time":"2027-01-01T00:00:00Z","timestamp":1798761600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-012"},{"start":{"date-parts":[[2027,1,1]],"date-time":"2027-01-01T00:00:00Z","timestamp":1798761600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2027,1,1]],"date-time":"2027-01-01T00:00:00Z","timestamp":1798761600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-004"}],"funder":[{"DOI":"10.13039\/501100021171","name":"Basic and Applied Basic Research Foundation of Guangdong Province","doi-asserted-by":"publisher","award":["2025A04J3536"],"award-info":[{"award-number":["2025A04J3536"]}],"id":[{"id":"10.13039\/501100021171","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100012166","name":"National Key Research and Development Program of China","doi-asserted-by":"publisher","award":["2023YFC3305404"],"award-info":[{"award-number":["2023YFC3305404"]}],"id":[{"id":"10.13039\/501100012166","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["elsevier.com","sciencedirect.com"],"crossmark-restriction":true},"short-container-title":["Computer Standards &amp; Interfaces"],"published-print":{"date-parts":[[2027,1]]},"DOI":"10.1016\/j.csi.2026.104180","type":"journal-article","created":{"date-parts":[[2026,6,6]],"date-time":"2026-06-06T03:57:50Z","timestamp":1780718270000},"page":"104180","update-policy":"https:\/\/doi.org\/10.1016\/elsevier_cm_policy","source":"Crossref","is-referenced-by-count":0,"special_numbering":"C","title":["TransMark: Lossless high-capacity watermarking for LLMs via neuron permutation invariances"],"prefix":"10.1016","volume":"99","author":[{"ORCID":"https:\/\/orcid.org\/0009-0004-9570-7566","authenticated-orcid":false,"given":"Pei-Gen","family":"Ye","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Zhuorong","family":"Chen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Haiwei","family":"Sang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jun","family":"Zheng","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"78","reference":[{"key":"10.1016\/j.csi.2026.104180_b1","doi-asserted-by":"crossref","first-page":"137010","DOI":"10.52202\/079017-4354","article-title":"Fincon: A synthesized llm multi-agent system with conceptual verbal reinforcement for enhanced financial decision making","volume":"37","author":"Yu","year":"2024","journal-title":"Adv. Neural Inf. Process. Syst."},{"issue":"8","key":"10.1016\/j.csi.2026.104180_b2","doi-asserted-by":"crossref","first-page":"1930","DOI":"10.1038\/s41591-023-02448-8","article-title":"Large language models in medicine","volume":"29","author":"Thirunavukarasu","year":"2023","journal-title":"Nature Med."},{"key":"10.1016\/j.csi.2026.104180_b3","doi-asserted-by":"crossref","unstructured":"I. Cheong, K. Xia, K.K. Feng, Q.Z. Chen, A.X. Zhang, (A) I am not a lawyer, but...: engaging legal experts towards responsible LLM policies for legal advice, in: Proceedings of the 2024 ACM Conference on Fairness, Accountability, and Transparency, 2024, pp. 2454\u20132469.","DOI":"10.1145\/3630106.3659048"},{"key":"10.1016\/j.csi.2026.104180_b4","doi-asserted-by":"crossref","DOI":"10.3389\/frai.2024.1293084","article-title":"Knowledge sharing in manufacturing using LLM-powered tools: user study and model benchmarking","volume":"7","author":"Kernan Freire","year":"2024","journal-title":"Front. Artif. Intell."},{"key":"10.1016\/j.csi.2026.104180_b5","doi-asserted-by":"crossref","unstructured":"X. Lin, W. Wang, Y. Li, S. Yang, F. Feng, Y. Wei, T.-S. Chua, Data-efficient Fine-tuning for LLM-based Recommendation, in: Proceedings of the 47th International ACM SIGIR Conference on Research and Development in Information Retrieval, 2024, pp. 365\u2013374.","DOI":"10.1145\/3626772.3657807"},{"key":"10.1016\/j.csi.2026.104180_b6","doi-asserted-by":"crossref","unstructured":"Y. Ding, C. Niu, F. Wu, S. Tang, C. Lyu, G. Chen, Enhancing on-device llm inference with historical cloud-based llm interactions, in: Proceedings of the 30th ACM SIGKDD Conference on Knowledge Discovery and Data Mining, 2024, pp. 597\u2013608.","DOI":"10.1145\/3637528.3671679"},{"key":"10.1016\/j.csi.2026.104180_b7","first-page":"611","article-title":"LLM platform security: Applying a systematic evaluation framework to openai\u2019s ChatGPT plugins","volume":"vol. 7","author":"Iqbal","year":"2024"},{"key":"10.1016\/j.csi.2026.104180_b8","doi-asserted-by":"crossref","unstructured":"Q. Zhang, B. Zeng, C. Zhou, G. Go, H. Shi, Y. Jiang, Human-imperceptible retrieval poisoning attacks in LLM-powered applications, in: Companion Proceedings of the 32nd ACM International Conference on the Foundations of Software Engineering, 2024, pp. 502\u2013506.","DOI":"10.1145\/3663529.3663786"},{"key":"10.1016\/j.csi.2026.104180_b9","doi-asserted-by":"crossref","unstructured":"H. Li, Q. Wang, Continual Origin Tracing of LLM-Generated Text, in: Proceedings of the 48th International ACM SIGIR Conference on Research and Development in Information Retrieval, 2025, pp. 479\u2013489.","DOI":"10.1145\/3726302.3729935"},{"key":"10.1016\/j.csi.2026.104180_b10","doi-asserted-by":"crossref","first-page":"18848","DOI":"10.52202\/079017-0597","article-title":"WaterMax: breaking the LLM watermark detectability-robustness-quality trade-off","volume":"37","author":"Giboulot","year":"2024","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.csi.2026.104180_b11","unstructured":"R. Zhang, S.S. Hussain, P. Neekhara, F. Koushanfar, {REMARK-LLM}: A robust and efficient watermarking framework for generative large language models, in: 33rd USENIX Security Symposium (USENIX Security 24), 2024, pp. 1813\u20131830."},{"issue":"8035","key":"10.1016\/j.csi.2026.104180_b12","doi-asserted-by":"crossref","first-page":"818","DOI":"10.1038\/s41586-024-08025-4","article-title":"Scalable watermarking for identifying large language model outputs","volume":"634","author":"Dathathri","year":"2024","journal-title":"Nature"},{"key":"10.1016\/j.csi.2026.104180_b13","series-title":"2024 IEEE Symposium on Security and Privacy","first-page":"845","article-title":"Promptcare: Prompt copyright protection by watermark injection and verification","author":"Yao","year":"2024"},{"key":"10.1016\/j.csi.2026.104180_b14","doi-asserted-by":"crossref","unstructured":"R. Zhang, F. Koushanfar, EmMark: Robust watermarks for IP protection of embedded quantized large language models, in: Proceedings of the 61st ACM\/IEEE Design Automation Conference, 2024, pp. 1\u20136.","DOI":"10.1145\/3649329.3655674"},{"key":"10.1016\/j.csi.2026.104180_b15","doi-asserted-by":"crossref","unstructured":"S. Guo, Y. Ju, X. Chen, J. Gu, LLM-MARK: A Computing Framework on Efficient Watermarking of Large Language Models for Authentic Use of Generative AI at Local Devices, in: Proceedings of the 61st ACM\/IEEE Design Automation Conference, 2024, pp. 1\u20136.","DOI":"10.1145\/3649329.3656545"},{"key":"10.1016\/j.csi.2026.104180_b16","series-title":"2024 IEEE International Symposium on Hardware Oriented Security and Trust","first-page":"233","article-title":"Empowering hardware security with llm: The development of a vulnerable hardware database","author":"Saha","year":"2024"},{"key":"10.1016\/j.csi.2026.104180_b17","doi-asserted-by":"crossref","DOI":"10.1016\/j.compeleceng.2024.109215","article-title":"Enhancing user prompt confidentiality in large language models through advanced differential encryption","volume":"116","author":"Gupta","year":"2024","journal-title":"Comput. Electr. Eng."},{"key":"10.1016\/j.csi.2026.104180_b18","doi-asserted-by":"crossref","unstructured":"W. Aljedaani, A. Habib, A. Aljohani, M. Eler, Y. Feng, Does chatgpt generate accessible code? investigating accessibility challenges in llm-generated source code, in: Proceedings of the 21st International Web for All Conference, 2024, pp. 165\u2013176.","DOI":"10.1145\/3677846.3677854"},{"key":"10.1016\/j.csi.2026.104180_b19","first-page":"984","article-title":"LLMs and memorization: On quality and specificity of copyright compliance","volume":"vol. 7","author":"Mueller","year":"2024"},{"key":"10.1016\/j.csi.2026.104180_b20","doi-asserted-by":"crossref","first-page":"59304","DOI":"10.52202\/075280-2590","article-title":"To repeat or not to repeat: Insights from scaling llm under token-crisis","volume":"36","author":"Xue","year":"2023","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.csi.2026.104180_b21","doi-asserted-by":"crossref","unstructured":"W. Ma, C. Yang, C. K\u00e4stner, (why) is my prompt getting worse? Rethinking regression testing for evolving llm apis, in: Proceedings of the IEEE\/ACM 3rd International Conference on AI Engineering-Software Engineering for AI, 2024, pp. 166\u2013171.","DOI":"10.1145\/3644815.3644950"},{"key":"10.1016\/j.csi.2026.104180_b22","doi-asserted-by":"crossref","first-page":"126332","DOI":"10.52202\/079017-4013","article-title":"Huref: Human-readable fingerprint for large language models","volume":"37","author":"Zeng","year":"2024","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.csi.2026.104180_b23","doi-asserted-by":"crossref","unstructured":"B. Darvish Rouhani, H. Chen, F. Koushanfar, DeepSigns: An End-to-End Watermarking Framework for Ownership Protection of Deep Neural Networks, in: Proceedings of the Twenty-Fourth International Conference on Architectural Support for Programming Languages and Operating Systems, ASPLOS \u201919, New York, NY, USA, ISBN: 9781450362405, 2019, pp. 485\u2013497.","DOI":"10.1145\/3297858.3304051"},{"key":"10.1016\/j.csi.2026.104180_b24","unstructured":"J. Zhang, D. Chen, J. Liao, W. Zhang, G. Hua, N. Yu, Passport-aware normalization for deep model protection, in: Proceedings of the 34th International Conference on Neural Information Processing Systems, NIPS \u201920, Red Hook, NY, USA, 2020."},{"key":"10.1016\/j.csi.2026.104180_b25","series-title":"Proceedings of the 29th ACM SIGKDD Conference on Knowledge Discovery and Data Mining","first-page":"1783","article-title":"Cracking white-box DNN watermarks via invariant neuron transforms","author":"Pan","year":"2023"},{"key":"10.1016\/j.csi.2026.104180_b26","series-title":"Llama 2: Open foundation and fine-tuned chat models","author":"Touvron","year":"2023"},{"key":"10.1016\/j.csi.2026.104180_b27","series-title":"Qwen2 technical report","author":"Team","year":"2024"},{"issue":"140","key":"10.1016\/j.csi.2026.104180_b28","first-page":"1","article-title":"Exploring the limits of transfer learning with a unified text-to-text transformer","volume":"21","author":"Raffel","year":"2020","journal-title":"J. Mach. Learn. Res."},{"key":"10.1016\/j.csi.2026.104180_b29","series-title":"Facebook FAIR\u2019s WMT19 news translation task submission","author":"Ng","year":"2019"},{"key":"10.1016\/j.csi.2026.104180_b30","article-title":"Teaching machines to read and comprehend","volume":"28","author":"Hermann","year":"2015","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.csi.2026.104180_b31","unstructured":"E.J. Hu, P. Wallis, Z. Allen-Zhu, Y. Li, S. Wang, L. Wang, W. Chen, et al., LoRA: Low-Rank Adaptation of Large Language Models, in: International Conference on Learning Representations, 2021."}],"container-title":["Computer Standards &amp; Interfaces"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0920548926000541?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0920548926000541?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2026,7,4]],"date-time":"2026-07-04T15:16:05Z","timestamp":1783178165000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S0920548926000541"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2027,1]]},"references-count":31,"alternative-id":["S0920548926000541"],"URL":"https:\/\/doi.org\/10.1016\/j.csi.2026.104180","relation":{},"ISSN":["0920-5489"],"issn-type":[{"value":"0920-5489","type":"print"}],"subject":[],"published":{"date-parts":[[2027,1]]},"assertion":[{"value":"Elsevier","name":"publisher","label":"This article is maintained by"},{"value":"TransMark: Lossless high-capacity watermarking for LLMs via neuron permutation invariances","name":"articletitle","label":"Article Title"},{"value":"Computer Standards & Interfaces","name":"journaltitle","label":"Journal Title"},{"value":"https:\/\/doi.org\/10.1016\/j.csi.2026.104180","name":"articlelink","label":"CrossRef DOI link to publisher maintained version"},{"value":"article","name":"content_type","label":"Content Type"},{"value":"\u00a9 2026 Published by Elsevier B.V.","name":"copyright","label":"Copyright"}],"article-number":"104180"}}