{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,25]],"date-time":"2026-07-25T03:05:04Z","timestamp":1784948704551,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":67,"publisher":"ACM","license":[{"start":{"date-parts":[[2021,10,17]],"date-time":"2021-10-17T00:00:00Z","timestamp":1634428800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"the fellowship of China National Postdoctoral Program for Innovative Talents","award":["BX2021229"],"award-info":[{"award-number":["BX2021229"]}]},{"name":"the Fundamental Research Funds for the Central Universities","award":["2042021kf1030"],"award-info":[{"award-number":["2042021kf1030"]}]},{"name":"the National Natural Science Foundation of China","award":["61876134,U1836112"],"award-info":[{"award-number":["61876134,U1836112"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2021,10,17]]},"DOI":"10.1145\/3474085.3475518","type":"proceedings-article","created":{"date-parts":[[2021,10,18]],"date-time":"2021-10-18T06:21:10Z","timestamp":1634538070000},"page":"3546-3555","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":77,"title":["FakeTagger"],"prefix":"10.1145","author":[{"given":"Run","family":"Wang","sequence":"first","affiliation":[{"name":"Wuhan University &amp; Ministry of Education, Wuhan, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Felix","family":"Juefei-Xu","sequence":"additional","affiliation":[{"name":"Alibaba Group, USA, San Mateo, CA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Meng","family":"Luo","sequence":"additional","affiliation":[{"name":"Northeastern University, Boston, MA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yang","family":"Liu","sequence":"additional","affiliation":[{"name":"Nanyang Technological University, Singapore, Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Lina","family":"Wang","sequence":"additional","affiliation":[{"name":"Wuhan University &amp; Ministry of Education, Wuhan, China"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2021,10,17]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCAIE.2010.5735066"},{"key":"e_1_3_2_1_2_1","volume-title":"CNN Detection of GAN-Generated Face Images based on Cross-Band Co-occurrences Analysis. arXiv preprint arXiv:2007.12909","author":"Barni Mauro","year":"2020"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.5555\/519496"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW50498.2020.00337"},{"key":"e_1_3_2_1_5_1","volume-title":"Adversarial Exposure Attack on Diabetic Retinopathy Imagery. arXiv preprint arXiv:2009.09231","author":"Cheng Yupeng","year":"2020"},{"key":"e_1_3_2_1_6_1","unstructured":"Kristy Choi Kedar Tatwawadi Tsachy Weissman and Stefano Ermon. 2018b. NECST: neural joint source-channel coding. (2018).  Kristy Choi Kedar Tatwawadi Tsachy Weissman and Stefano Ermon. 2018b. NECST: neural joint source-channel coding. (2018)."},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00916"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00821"},{"key":"e_1_3_2_1_9_1","volume-title":"Fakecatcher: Detection of synthetic portrait videos using biological signals","author":"Ciftci Umur Aybars","year":"2020"},{"key":"e_1_3_2_1_10_1","volume-title":"We Are Truly F--ed: Everyone Is Making AI-Generated Fake Porn Now. https:\/\/www.vice.com\/en_us\/article\/bjye8a\/reddit-fake-porn-app-daisy-ridley\/. (Jan 25","author":"Cole Samantha","year":"2018"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00791"},{"key":"e_1_3_2_1_12_1","volume-title":"12 deepfake examples that terrified and amused the internet. https:\/\/www.creativebloq.com\/features\/deepfake-examples\/. (Feb 10","author":"Foley Joseph","year":"2021"},{"key":"e_1_3_2_1_13_1","volume-title":"Leveraging Frequency Analysis for Deep Fake Image Recognition. arXiv preprint arXiv:2003.08685","author":"Frank Joel","year":"2020"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1109\/IJCNN48605.2020.9207034"},{"key":"e_1_3_2_1_15_1","volume-title":"Making Images Undiscoverable from Co-Saliency Detection. arXiv preprint arXiv:2009.09258","author":"Gao Ruijun","year":"2020"},{"key":"e_1_3_2_1_16_1","volume-title":"Advhaze: Adversarial haze attack. arXiv preprint arXiv:2104.13673","author":"Gao Ruijun","year":"2021"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.5555\/2969033.2969125"},{"key":"e_1_3_2_1_18_1","volume-title":"Countering adversarial images using input transformations. arXiv preprint arXiv:1711.00117","author":"Guo Chuan","year":"2017"},{"key":"e_1_3_2_1_19_1","unstructured":"Qing Guo Felix Juefei-Xu Xiaofei Xie Lei Ma Jian Wang Bing Yu Wei Feng and Yang Liu. 2020. Watch out! Motion is Blurring the Vision of Your Deep Neural Networks. In Advances in Neural Information Processing Systems (NeurIPS).  Qing Guo Felix Juefei-Xu Xiaofei Xie Lei Ma Jian Wang Bing Yu Wei Feng and Yang Liu. 2020. Watch out! Motion is Blurring the Vision of Your Deep Neural Networks. In Advances in Neural Information Processing Systems (NeurIPS)."},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2019.2916751"},{"key":"e_1_3_2_1_21_1","volume-title":"2020 a. FakeRetouch: Evading DeepFakes Detection via the Guidance of Deliberate Noise. arXiv preprint arXiv:2009.09213","author":"Huang Yihao","year":"2020"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/3394171.3413732"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/3394171.3413732"},{"key":"e_1_3_2_1_24_1","volume-title":"2020 d. FakeLocator: Robust localization of GAN-based face manipulations. arXiv preprint arXiv:2001.09598","author":"Huang Yihao","year":"2020"},{"key":"e_1_3_2_1_25_1","volume-title":"Proceedings. The 2009 International Symposium on Web Information Systems and Applications (WISA","author":"Jiansheng Mei","year":"2009"},{"key":"e_1_3_2_1_26_1","volume-title":"Countering Malicious DeepFakes: Survey, Battleground, and Horizon. arXiv preprint arXiv:2103.00218","author":"Juefei-Xu Felix","year":"2021"},{"key":"e_1_3_2_1_27_1","volume-title":"Spectral distribution aware image generation. arXiv preprint arXiv:2012.03110","author":"Jung Steffen","year":"2020"},{"key":"e_1_3_2_1_28_1","volume-title":"Progressive growing of gans for improved quality, stability, and variation. arXiv preprint arXiv:1710.10196","author":"Karras Tero","year":"2017"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00453"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00813"},{"key":"e_1_3_2_1_31_1","volume-title":"Digital watermarking","author":"Katzenbeisser S","year":"2000"},{"key":"e_1_3_2_1_32_1","volume-title":"et almbox","author":"Khan Mohammad Ibrahim","year":"2013"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1109\/WIFS.2018.8630787"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00379"},{"key":"e_1_3_2_1_35_1","volume-title":"On detecting adversarial perturbations. arXiv preprint arXiv:1702.04267","author":"Metzen Jan Hendrik","year":"2017"},{"key":"e_1_3_2_1_36_1","volume-title":"The Creation and Detection of Deepfakes: A Survey. arXiv preprint arXiv:2004.11138","author":"Mirsky Yisroel","year":"2020"},{"key":"e_1_3_2_1_37_1","volume-title":"Spectral normalization for generative adversarial networks. arXiv preprint arXiv:1802.05957","author":"Miyato Takeru","year":"2018"},{"key":"e_1_3_2_1_38_1","volume-title":"Wavenet: A generative model for raw audio. arXiv preprint arXiv:1609.03499","author":"van den Oord Aaron","year":"2016"},{"key":"e_1_3_2_1_39_1","volume-title":"et almbox","author":"Petrov Ivan","year":"2020"},{"key":"e_1_3_2_1_40_1","volume-title":"Digital watermarking: algorithms and applications","author":"Podilchuk Christine I","year":"2001"},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/3394171.3413707"},{"key":"e_1_3_2_1_42_1","volume-title":"Thinking in Frequency: Face Forgery Detection by Mining Frequency-aware Clues. arXiv preprint arXiv:2007.09355","author":"Qian Yuyang","year":"2020"},{"key":"e_1_3_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-24574-4_28"},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-66823-5_14"},{"key":"e_1_3_2_1_45_1","unstructured":"William E Ryan etal 2004. An introduction to LDPC codes. bibinfonumpages23 pages.  William E Ryan et al. 2004. An introduction to LDPC codes. bibinfonumpages23 pages."},{"key":"e_1_3_2_1_46_1","volume-title":"Defense-gan: Protecting classifiers against adversarial attacks using generative models. arXiv preprint arXiv:1805.06605","author":"Samangouei Pouya","year":"2018"},{"key":"e_1_3_2_1_47_1","volume-title":"Disrupting Deepfakes with an Adversarial Attack that Survives Training. arXiv preprint arXiv:2006.12247","author":"Segalis Eran","year":"2020"},{"key":"e_1_3_2_1_48_1","first-page":"140","article-title":"Digital image watermarking techniques: a review","volume":"9","author":"Siddaraju Pushpa Mala","year":"2015","journal-title":"Int. J. Comput. Sci. Secur"},{"key":"e_1_3_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.1109\/PDGC.2012.6449871"},{"key":"e_1_3_2_1_50_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00219"},{"key":"e_1_3_2_1_51_1","doi-asserted-by":"publisher","DOI":"10.1145\/2929464.2929475"},{"key":"e_1_3_2_1_52_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICME51207.2021.9428437"},{"key":"e_1_3_2_1_53_1","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2021\/145"},{"key":"e_1_3_2_1_54_1","volume-title":"Deepfakes and beyond: A survey of face manipulation and fake detection. arXiv preprint arXiv:2001.00179","author":"Tolosana Ruben","year":"2020"},{"key":"e_1_3_2_1_55_1","doi-asserted-by":"publisher","DOI":"10.1145\/3394171.3413716"},{"key":"e_1_3_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2020\/476"},{"key":"e_1_3_2_1_57_1","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2020\/476"},{"key":"e_1_3_2_1_58_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00872"},{"key":"e_1_3_2_1_59_1","volume-title":"Feature squeezing: Detecting adversarial examples in deep neural networks. arXiv preprint arXiv:1704.01155","author":"Xu Weilin","year":"2017"},{"key":"e_1_3_2_1_60_1","volume-title":"Defending against gan-based deepfake attacks via transformation-aware adversarial faces. arXiv preprint arXiv:2006.07421","author":"Yang Chaofei","year":"2020"},{"key":"e_1_3_2_1_61_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP.2019.8683164"},{"key":"e_1_3_2_1_62_1","doi-asserted-by":"publisher","DOI":"10.1145\/1244002.1244232"},{"key":"e_1_3_2_1_63_1","doi-asserted-by":"publisher","DOI":"10.1109\/WACVW50321.2020.9096939"},{"key":"e_1_3_2_1_64_1","volume-title":"It's Raining Cats or Dogs? Adversarial Rain Attack on DNN Perception. arXiv preprint arXiv:2009.09205","author":"Zhai Liming","year":"2020"},{"key":"e_1_3_2_1_65_1","doi-asserted-by":"publisher","DOI":"10.1109\/WIFS47025.2019.9035107"},{"key":"e_1_3_2_1_66_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01267-0_40"},{"key":"e_1_3_2_1_67_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.244"}],"event":{"name":"MM '21: ACM Multimedia Conference","location":"Virtual Event China","acronym":"MM '21","sponsor":["SIGMM ACM Special Interest Group on Multimedia"]},"container-title":["Proceedings of the 29th ACM International Conference on Multimedia"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3474085.3475518","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3474085.3475518","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T20:49:10Z","timestamp":1750193350000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3474085.3475518"}},"subtitle":["Robust Safeguards against DeepFake Dissemination via Provenance Tracking"],"short-title":[],"issued":{"date-parts":[[2021,10,17]]},"references-count":67,"alternative-id":["10.1145\/3474085.3475518","10.1145\/3474085"],"URL":"https:\/\/doi.org\/10.1145\/3474085.3475518","relation":{},"subject":[],"published":{"date-parts":[[2021,10,17]]},"assertion":[{"value":"2021-10-17","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}